<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>AOIP - Anything Over IP &#187; Cisco Tutorials</title>
	<atom:link href="http://www.anythingoverip.co.za/category/tutorials/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.anythingoverip.co.za</link>
	<description>Anything Over IP</description>
	<lastBuildDate>Wed, 27 Jul 2011 05:24:51 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1</generator>
		<item>
		<title>Static NAT overloaded???</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-nat-overloaded/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-nat-overloaded/#comments</comments>
		<pubDate>Wed, 27 Jul 2011 05:24:51 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Access-Lists]]></category>
		<category><![CDATA[CCNA (ICND2)]]></category>
		<category><![CDATA[IINS]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[SNRS]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=736</guid>
		<description><![CDATA[So we have already looked at all 3 possible NAT configurations, however there is one more trick that is always useful to know. How to overload a Static NAT. Let&#8217;s assume the following for this example We have 2 public IP addresses (192.168.1.1 &#38; 192.168.1.2) The IP address on the outside interface has been configured [...]]]></description>
			<content:encoded><![CDATA[<p>So we have already looked at all 3 possible NAT configurations, however there is one more trick that is always useful to know. How to overload a Static NAT.</p>
<p>Let&#8217;s assume the following for this example</p>
<ul>
<li> We have 2 <a title="Useable IP addresses in private networks" href="http://www.anythingoverip.co.za/networking-101/useable-ip-addresses-in-private-networks/">public IP addresses</a> (192.168.1.1 &amp; 192.168.1.2)</li>
<li>The IP address on the outside interface has been configured to use <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload">PAT</a> for all internal IP addresses for Internet access (192.168.1.1)</li>
<li>I have a DMZ with 3 servers, FTP, E-mail, and Web Server (10.0.1.1, 10.0.1.2 &amp; 10.0.1.3 respectively)</li>
<li>I need my 3 DMZ servers to be reachable from the Internet.</li>
</ul>
<p>The above scenario poses a slight problem. If I have already used one of my public addresses for PAT to allow all internal hosts to access the Internet, I only have one IP address left but I require 3 <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers">static NAT</a> entries to be created. In my post on <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers">Static NAT</a> we saw that we configure NAT to map on a one-to-one basis, so in this scenario I would require 3 IP addresses, one for each of my DMZ servers.</p>
<p>The nice thing about the above scenario, is that each of the three servers is hosting a totally different service and therefore each requires different <a title="Ports and their use." href="http://www.anythingoverip.co.za/networking-101/ports-and-their-use/">ports</a> to be accessible from the Internet. This allows me to create static NAT&#8217;s that specify the ports, a type of overload function.</p>
<p>FTP would require ports 20,21 to be allowed<br />
E-mail would require port 25 to be opened, and possibly 143 and 110 if you are using IMAP or POP<br />
Web Server will require port 80, and possibly 443 if there is any SSL been used (https).</p>
<p>The above can be configured in the following way (interfaces would need to be configured as inside and outside as well, as seen <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers">here</a>)</p>
<p>AOIP.ORG (config) # ip nat inside source static tcp 10.0.1.1 192.168.1.2 20<br />
AOIP.ORG (config) # ip nat inside source static tcp 10.0.1.1 192.168.1.2 21</p>
<p>AOIP.ORG (config) # ip nat inside source static tcp 10.0.1.2 192.168.1.2 25<br />
AOIP.ORG (config) # ip nat inside source static tcp 10.0.1.2 192.168.1.2 143<br />
AOIP.ORG (config) # ip nat inside source static tcp 10.0.1.2 192.168.1.2 110</p>
<p>AOIP.ORG (config) # ip nat inside source static tcp 10.0.1.3 192.168.1.2 80<br />
AOIP.ORG (config) # ip nat inside source static tcp 10.0.1.3 192.168.1.2 443</p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/' rel='bookmark' title='Permanent Link: Configuring Static NAT on Cisco Routers'>Configuring Static NAT on Cisco Routers</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/' rel='bookmark' title='Permanent Link: Configuring PAT on Cisco Routers (NAT Overload)'>Configuring PAT on Cisco Routers (NAT Overload)</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/nat-network-address-translation/' rel='bookmark' title='Permanent Link: NAT (Network Address Translation)'>NAT (Network Address Translation)</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-nat-overloaded/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Configuring PAT on Cisco Routers (NAT Overload)</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/#comments</comments>
		<pubDate>Wed, 20 Jul 2011 14:06:58 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Access-Lists]]></category>
		<category><![CDATA[CCNA (ICND2)]]></category>
		<category><![CDATA[IINS]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[SND]]></category>
		<category><![CDATA[WAN]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=732</guid>
		<description><![CDATA[PAT (Port Address Translation) is by far the most common implementation of NAT, and if you have an ADSL router at home there is a 100% chance you are using it. PAT or otherwise known as NAT overload, allows you to translate IP addresses in a many-to-one method. In my previous post on Configuring Dynamic [...]]]></description>
			<content:encoded><![CDATA[<p>PAT (Port Address Translation) is by far the most common implementation of NAT, and if you have an ADSL router at home there is a 100% chance you are using it.</p>
<p>PAT or otherwise known as NAT overload, allows you to translate IP addresses in a many-to-one method.<br />
In my previous post on <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers">Configuring Dynamic NAT</a> we saw that we can NAT many-to-many  but this was limited by the amount of public addresses that you have available. In cases such as home ADSL, your ISP will only issue you with a single public IP address but you might have 2 or more devices that need to access the Internet at any given time. This is where PAT takes over and makes this all possible.</p>
<p>As with any NAT configuration we need to first define our inside and outside interfaces. In this example I&#8217;ll use FastEthernet 0/0 as my inside, and Serial 0 as my outside.</p>
<p>AOIP.ORG (config) # interface FastEthernet 0/0<br />
AOIP.ORG (config-if) # ip nat inside<br />
AOIP.ORG (config-if) # interface Serial 0<br />
AOIP.ORG (config-if) # ip nat outside</p>
<p>The next step is to define which addresses in my inside network I want to allow to be translated. Let&#8217;s assume my inside IP address range is 10.0.1.0 /24</p>
<p>AOIP.ORG (config) # access-list 1 permit 10.0.1.0 0.0.0.255  (Using a standard access-list is the easiest way to achieve this)</p>
<p>Then I need to configure the address that will be used by my internal IP addresses for accessing the outside interface. This can be done in 2 ways.</p>
<p><strong>Option 1:</strong><br />
If I only have 1 public IP address, which is the case with home ADSL, the router will already have that IP address allocated to it by your ISP. The only thing I can do is tell the router to share that address with my internal hosts.</p>
<p>AOIP.ORG (config) # ip nat inside source list 1 Serial 0 overload (This defines my access-list 1 as the source addresses, and tell them to be translated into the same IP address that is configured on Serial 0. The overload command tells the router that it needs to keep track of all the source and destination ports so the IP address can be used multiple times, overloaded)</p>
<p><strong>Option 2:</strong><br />
If I have a second public IP address that I would like to use for Internet browsing, I can configure PAT for that IP address.</p>
<p>AOIP.ORG (config) # ip nat inside source list 1 192.168.1.1 overload (Same as the above command, but I&#8217;ve specifically told the router which IP address to translate my internal hosts into)</p>
<p>This option is fantastic if you have multiple public addresses and you want to segment your Internet browsing based on departments or geographic locations. For example<br />
Marketing &#8211; 10.1.0.0 /24<br />
Sales &#8211; 10.2.0.0 /24<br />
Technical &#8211; 10.3.0.0 /24</p>
<p>I can have each of the above departments using their own public IP address, which will make log files easier to read when tracking Internet use and for troubleshooting connection errors.</p>
<p>access-list 2 permit 10.1.0.0 0.0.0.255<br />
access-list 3 permit 10.2.0.0 0.0.0.255<br />
access-list 4 permit 10.3.0.0 0.0.0.255<br />
ip nat inside source list 2 192.168.1.2 overload<br />
ip nat inside source list 3 192.168.1.3 overload<br />
ip nat inside source list 4 192.168.1.4 overload</p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers/' rel='bookmark' title='Permanent Link: Configuring Dynamic NAT on Cisco Routers'>Configuring Dynamic NAT on Cisco Routers</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/' rel='bookmark' title='Permanent Link: Configuring Static NAT on Cisco Routers'>Configuring Static NAT on Cisco Routers</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-nat-overloaded/' rel='bookmark' title='Permanent Link: Static NAT overloaded???'>Static NAT overloaded???</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Configuring Dynamic NAT on Cisco Routers</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers/#comments</comments>
		<pubDate>Fri, 15 Jul 2011 04:00:58 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Access-Lists]]></category>
		<category><![CDATA[CCNA (ICND2)]]></category>
		<category><![CDATA[IINS]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[SND]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=725</guid>
		<description><![CDATA[In my last post Configuring Static NAT on Cisco Routers we saw how you can translate 1 IP address into another single IP address. This tutorial will cover how to translate many IP addresses into many IP addresses, otherwise referred to as many-to-many translation. Dynamic NAT allows us to translate many IP addresses into a [...]]]></description>
			<content:encoded><![CDATA[<p>In my last post <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers">Configuring Static NAT on Cisco Routers</a> we saw how you can translate 1 IP address into another single IP address. This tutorial will cover how to translate many IP addresses into many IP addresses, otherwise referred to as many-to-many translation.</p>
<p>Dynamic NAT allows us to translate many IP addresses into a pool of many IP addresses. The big thing to realize here is that the pool does not need to contain enough IP addresses to translate all the internal addresses at the same time, as would be the case if we used Static NAT. Dynamic NAT allows internal hosts to be translated into an IP address in the pool when it requires a connection. Once the internal host has finished it&#8217;s session the NAT entry is removed from the NAT table allowing another internal host to use the external IP address for it&#8217;s session.</p>
<p>Assume we have 50 hosts in our inside network but only have 5 public IP addresses available to use. With Dynamic NAT we can allow all 50 internal addresses to share the 5 public addresses as and when they need them. This of course does impose a limit of only 5 simultaneous connections to the outside world and that is where <a title="Configuring PAT on Cisco Routers (NAT Overload)" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/">PAT</a> would come in and solve that problem.</p>
<p>On of the benefits of using Dynamic NAT vs <a title="Configuring Static NAT on Cisco Routers" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/">Static NAT</a>, is that Dynamic NAT requires the session to originate from the inside network. No outside connections can be established to the inside network. This is obviously a more secure solution as connections from the outside won&#8217;t work; only traffic originating from the inside will be translated. Static NAT is different in the fact that the entry is added to the NAT table on a permanent basis and will allow connections in either direction.</p>
<p>Here are the steps to configure Dynamic NAT on a Cisco Router.</p>
<p><strong>Step 1 </strong>: I need to define the IP address range that will be translated (my inside IP addresses). I can do this with a standard access-list</p>
<p>AOIP.ORG (config)# access-list 1 permit 10.0.1.0 0.0.0.255    (don&#8217;t forget, access-lists use <a title="Wildcard Mask" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/wildcard-mask/">wildcard masks</a>, not subnet masks)</p>
<p><strong>Step 2</strong> : I need to configure the range of addresses that my internal network will be translated into by using a NAT pool.</p>
<p>AOIP.ORG (config) # ip nat pool MY_POOL 10.50.1.1 10.50.1.5 netmask 255.255.255.0    (There are 5 IP addresses that can be used for translation in this example)</p>
<p><strong>Step3</strong> : Define inside and outside interfaces</p>
<p>AOIP.ORG (config) # interface FastEthernet 0/0<br />
AOIP.ORG (config-if) # ip nat inside<br />
AOIP.ORG (config-if) # interface Serial 0<br />
AOIP.ORG (config-if) # ip nat outside</p>
<p><strong>Step 4</strong> : Configure the translation to take place.</p>
<p>AOIP.ORG (config) # ip nat inside source list 1 pool MY_POOL   (List 1 is my access-list that defined my inside IP addresses, MY_POOL defined the IP addresses to be used for the translation)</p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/' rel='bookmark' title='Permanent Link: Configuring PAT on Cisco Routers (NAT Overload)'>Configuring PAT on Cisco Routers (NAT Overload)</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/' rel='bookmark' title='Permanent Link: Configuring Static NAT on Cisco Routers'>Configuring Static NAT on Cisco Routers</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/nat-network-address-translation/' rel='bookmark' title='Permanent Link: NAT (Network Address Translation)'>NAT (Network Address Translation)</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Configuring Static NAT on Cisco Routers</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/#comments</comments>
		<pubDate>Thu, 07 Jul 2011 09:00:44 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[CCNA (ICND2)]]></category>
		<category><![CDATA[IINS]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[WAN]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=722</guid>
		<description><![CDATA[In my previous post on NAT, I explained the difference between the 3 different types of NAT that can be configured. In this tutorial I&#8217;m going to cover the configuration steps to configure static NAT. Static NAT is a one-to-one mapping. It allows us to translate a single IP address into a different single IP [...]]]></description>
			<content:encoded><![CDATA[<p>In my previous post on <a title="NAT (Network Address Translation)" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/nat-network-address-translation/">NAT</a>, I explained the difference between the 3 different types of NAT that can be configured. In this tutorial I&#8217;m going to cover the configuration steps to configure static NAT.</p>
<p>Static NAT is a one-to-one mapping. It allows us to translate a single IP address into a different single IP address. This is most commonly found when you have a server inside your DMZ that you would like to allow the outside world (The Internet) to connect to, such as E-mail servers, FTP servers and Web servers (if you&#8217;re hosting your own).</p>
<p>The first step in configuration static NAT, is to define which interfaces on your router are involved in the NAT process and then configuring your Cisco router to know which interface is on which side of the network. Your Cisco router needs to know which interface is the inside interface and which is the outside interface to allow the translation to take place.</p>
<p>For example purposes let&#8217;s assume that FastEthernet 0/0 is the inside interface, and Serial 0 is my outside.</p>
<p><a title="AOIP" href="http://www.aoip.org">AOIP.ORG</a> &gt; en<br />
AOIP.ORG # conf t<br />
AOIP.ORG (config)# interface FastEthernet 0/0<br />
AOIP.ORG (config-if)# ip nat inside<br />
AOIP.ORG (config-if)# interface Serial 0<br />
AOIP.ORG (config-if)# ip nat outside</p>
<p>So we have just informed our Cisco router of the inside and the outside, the next step is to tell your Router how to translate and what to translate.</p>
<p>Let&#8217;s assume that I have a server in my DMZ that has an IP address of 10.0.1.1 and I have a public IP address of 192.168.1.1 (yes I know this a private range part of <a title="Useable IP addresses in private networks" href="http://www.anythingoverip.co.za/networking-101/useable-ip-addresses-in-private-networks/">RFC 1918</a>, but for example purposes, let&#8217;s assume it&#8217;s not).</p>
<p>AOIP.ORG (config)# ip nat inside source static 10.0.1.1 192.168.1.1</p>
<p>That&#8217;s it, your done. When your server 10.0.1.1 connects to anything on Serial 0 and beyond, the source IP address will be translated into 192.168.1.1. Similarly, when someone from the Internet connects to the IP address 192.168.1.1 it will be translated into a destination IP address of 10.0.1.1 and hence connect to our server in the DMZ (Access-list permitting).</p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/' rel='bookmark' title='Permanent Link: Configuring PAT on Cisco Routers (NAT Overload)'>Configuring PAT on Cisco Routers (NAT Overload)</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers/' rel='bookmark' title='Permanent Link: Configuring Dynamic NAT on Cisco Routers'>Configuring Dynamic NAT on Cisco Routers</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-nat-overloaded/' rel='bookmark' title='Permanent Link: Static NAT overloaded???'>Static NAT overloaded???</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>NAT (Network Address Translation)</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/ccna/nat-network-address-translation/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/ccna/nat-network-address-translation/#comments</comments>
		<pubDate>Mon, 21 Sep 2009 11:31:44 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[CCNA (ICND2)]]></category>
		<category><![CDATA[Management]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[WAN]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=698</guid>
		<description><![CDATA[NAT or Network Address Translation is a key function required in every organisations network. Since all organisation use RFC 1918 IP addressing, and these IP addresses are not allowed to exist on the internet, before we send packets to the internet we need to translate the internal IP address into a useable public IP address. [...]]]></description>
			<content:encoded><![CDATA[<p>NAT or Network Address Translation is a key function required in every organisations network.<br />
Since all organisation use <a href="http://www.anythingoverip.co.za/networking-101/useable-ip-addresses-in-private-networks/">RFC 1918 </a>IP addressing, and these <a href="http://www.anythingoverip.co.za/networking-101/what-is-an-ip-address/">IP addresses </a>are not allowed to exist on the internet, before we send packets to the internet we need to translate the <a href="http://www.anythingoverip.co.za/networking-101/useable-ip-addresses-in-private-networks/">internal IP address </a>into a useable public IP address.</p>
<p>There are 3 ways to configure NAT on a Cisco Router<br />
1/ <a title="Configuring Static NAT on Cisco Routers" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/">Static NAT</a><br />
2/ <a title="Configuring Dynamic NAT on Cisco Routers" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers/">Dynamic NAT</a><br />
3/ <a title="Configuring PAT on Cisco Routers (NAT Overload)" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/">NAT overload</a> (PAT – Port Address translation)</p>
<p><a title="Configuring Static NAT on Cisco Routers" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-static-nat-on-cisco-routers/"><strong>Static NAT</strong></a> is a one-to-one mapping. This is usually only required when you have a server inside your network (ie: Webserver, FTP, E-mail) that needs to be accessed from the internet. Users on the internet will access a public IP address that you have statically and permanently linked to your servers internal IP address. Of course any time your internal server sends packet to the internet, it’s source IP address will be translated into a public IP address configured with static NAT.</p>
<p><a title="Configuring Dynamic NAT on Cisco Routers" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers/"><strong>Dynamic NAT</strong></a> is used for many-to-many mapping. This will allow all your internal computers to be translated into a pool of public IP addresses, however if you only have 10 public IP addresses available in the NAT pool, only 10 computers will be able to access the public network at a time. Each computer will consume one public address at a time which makes this very limited for public internet access. The main purpose for dynamic NAT is to fix overlap IP addresses often experienced after a merger or acquisition. Since all companies use RFC 1918 for internal addresses, it’s not uncommon for 2 companies to be using the exact same internal IP addresses. When a merger or acquisition takes place there are issues with the IP addresses conflicting. Dynamic NAT allows us to translate the internal IP addresses from company ‘A’ into something unique that company ‘B’ does not use, and similarly translate all the internal IP addresses in company ‘B’ into something unique that company ‘A’ does not use. In most cases the ‘public’ address that the two companies will be translated into, will be part of RFC 1918 and will be used purely to resolve IP address overlaps, and NOT internet access.</p>
<p><a title="Configuring PAT on Cisco Routers (NAT Overload)" href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/"><strong>NAT overload</strong></a>, or otherwise known as <strong>PAT (Port Address Translation),</strong> allows us to create a many-to-one mapping. Every computer in your network will be translated into a single Public IP address. This allows us to save on public addresses but still allows each computer in our organisation to access the internet at the same time. PAT identifies each session based on the source port number used in the communication flow. Since each session uses a random source port number, each session in theory should have a different number which allows PAT to associate a session with the single public IP addresses been shared. In the occurrence of two computers randomly choosing the same source port number, PAT will translate the port number and keep a record of the original as well as the new translated port to maintain the session. PAT will not allow internet users to access your internal servers as there is no mapping from outside to inside. The maximum theoretical limit for sharing a single IP address is 64,513 however the practical limit is dependent on the router or firewall doing the PAT and is usually limited to no more than 4,000 sessions to a single IP address.</p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-pat-on-cisco-routers-nat-overload/' rel='bookmark' title='Permanent Link: Configuring PAT on Cisco Routers (NAT Overload)'>Configuring PAT on Cisco Routers (NAT Overload)</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-dynamic-nat-on-cisco-routers/' rel='bookmark' title='Permanent Link: Configuring Dynamic NAT on Cisco Routers'>Configuring Dynamic NAT on Cisco Routers</a></li><li><a href='http://www.anythingoverip.co.za/networking-101/useable-ip-addresses-in-private-networks/' rel='bookmark' title='Permanent Link: Useable IP addresses in private networks'>Useable IP addresses in private networks</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/ccna/nat-network-address-translation/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Creating Layer 2 and Layer 3 Ether Channels</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/bcmsn/creating-layer-2-and-layer-3-ether-channels/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/bcmsn/creating-layer-2-and-layer-3-ether-channels/#comments</comments>
		<pubDate>Fri, 28 Aug 2009 15:00:11 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[BCMSN]]></category>
		<category><![CDATA[Switching]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=590</guid>
		<description><![CDATA[In order to bundle multiple interfaces between switches in an effort in increase throughput, a Ether Channel can be created.   Ether Channels can be created as Layer 2 or Layer3. The obvious difference between the 2 is that a Layer 3 link will have a IP address associated and hence traffic can be routed between [...]]]></description>
			<content:encoded><![CDATA[<p>In order to bundle multiple interfaces between switches in an effort in increase throughput, a Ether Channel can be created.</p>
<p> </p>
<p>Ether Channels can be created as Layer 2 or Layer3. The obvious difference between the 2 is that a Layer 3 link will have a <a href="http://www.anythingoverip.co.za/networking-101/what-is-an-ip-address/">IP address </a>associated and hence traffic can be routed between the 2 switches. A layer 2 ether channel will not have IP addresses attached and all traffic will be switched between the 2 devices.</p>
<p> </p>
<p>There is a misconception about how the ‘load balancing’ works over a ether channel, so firstly lets clear that up.</p>
<p>An ether channel allows us to group multiple interfaces together so they act as one. This means that if I have 5 x 1 Gigabit Ethernet interfaces that I bind together I will in theory have a 5 Gigabit Ethernet interface. This is partly true but let’s dig deeper into how the switch will send traffic over the new link.</p>
<p>By Default, most Cisco switches are configured with a load balancing option of ‘source to destination IP’, what this means is that when the first session is created between machine A and machine B their traffic will use the same physical interface from the ether channel bundle. The packets will not be load balanced between all the ports. However when machine C sends traffic to machine D they would use a different physical interface compared to machine A and B. What we can derive from this, is that the load-balancing is session orientated and each session will be limited to 1 physical interface. So although the total throughput of data between the 2 switches is 5 Gigabit, the maximum throughput between 2 machines is the total of 1 physical interface of the ether channel.</p>
<p> </p>
<p>The load-balancing technique can be changed from its default using the <strong>port-channel load-balance</strong> command, as seen below.</p>
<p><strong>port-channel load-balance {src-mac | dst-mac | src-dst-mac | src-ip | dst-ip | src-dst-ip | src-port | dst-port | src-dst-port}</strong><strong></strong></p>
<p><strong>NOTE:</strong> not all switches support all options of load-balancing!</p>
<p>So now that we have seen the concept of Ether Channels and how their load-balancing works, here is the configuration for configuring a Layer 2 Ether Channel.</p>
<p> </p>
<p> </p>
<p><strong>AOIP.ORG-Switch(config)# interface range f0/4 – 5</strong></p>
<p>The interface range command allow me to configure multiple interfaces at the same time, in this case FastEthernet 0/4 and 0/5</p>
<p><strong>AOIP.ORG-Switch(config-if-range)# channel-group 1 mode desirable</strong></p>
<p>This associates the interfaces to a new logical interface and tells the interface to actively negotiate a <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-a-trunk-port-on-a-cisco-switch/">trunk.</a></p>
<p><strong>AOIP.ORG-Switch(config-if-range)# no shut</strong></p>
<p><strong>AOIP.ORG-Switch(config-if-range)# exit</strong></p>
<p><strong>AOIP.ORG-Switch(config)# exit</strong></p>
<p> </p>
<p> </p>
<p>In order to configure a Layer 2 Ether Channel, the following configuration can be used.</p>
<p> </p>
<p><strong>AOIP.ORG-Switch(config)# interface port-channel 10</strong></p>
<p>This enters the logical interface used for the Ether Channel, I have given it a ‘name’ of 10</p>
<p><strong>AOIP.ORG-Switch(config-if)# no switchport</strong></p>
<p>Forces the port to act as a routed port and not a switchport</p>
<p><strong>AOIP.ORG-Switch(config-if)# ip address 10.0.100.1 255.255.255.0</strong></p>
<p>Assigns the IP address to the interface</p>
<p><strong>AOIP.ORG-Switch(config-if)# no shut</strong></p>
<p><strong>AOIP.ORG-Switch(config-if)# exit</strong></p>
<p><strong> </strong></p>
<p><strong>AOIP.ORG-Switch(config)# interface range f0/4 -5</strong></p>
<p>Same as above, I’m configuring 2 interfaces to belong to the Ether Channel</p>
<p><strong>AOIP.ORG-Switch(config-if-range)# no switchport</strong></p>
<p>Forcing the physical ports in Routed ports</p>
<p><strong>AOIP.ORG-Switch(config-if-range)# no ip address</strong></p>
<p>Removing any IP addresses that may be configured on the physical interfaces. They may not have an IP address as it will be associated to the logical interface (port-channel 10)</p>
<p><strong>AOIP.ORG-Switch(config-if-range)# channel-group 10 mode desirable</strong></p>
<p>Binds the physical interfaces to the logical interface</p>
<p><strong>AOIP.ORG-Switch(config-if-range)# no shut</strong></p>
<p><strong>AOIP.ORG-Switch(config-if-range)# exit</strong></p>
<p><strong>AOIP.ORG-Switch(config)# exit</strong></p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-and-multilink-with-load-threshold/' rel='bookmark' title='Permanent Link: ISDN and Multilink with load-threshold'>ISDN and Multilink with load-threshold</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/inter-vlan-routing-router-on-a-stick/' rel='bookmark' title='Permanent Link: Inter-VLAN Routing (Router on a Stick)'>Inter-VLAN Routing (Router on a Stick)</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-a-trunk-port-on-a-cisco-switch/' rel='bookmark' title='Permanent Link: Configuring a Trunk port on a Cisco Switch'>Configuring a Trunk port on a Cisco Switch</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/bcmsn/creating-layer-2-and-layer-3-ether-channels/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ISDN and Multilink with load-threshold</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-and-multilink-with-load-threshold/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-and-multilink-with-load-threshold/#comments</comments>
		<pubDate>Thu, 27 Aug 2009 14:46:42 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[ISCW]]></category>
		<category><![CDATA[WAN]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=548</guid>
		<description><![CDATA[ISDN is a fantastic option as a backup in cases where your primary link has failed. However often your primary line has much more bandwidth than a single ISDN line (Channel). The ISDN BRI B-Channels run at 56kb/s or 64 kb/s (depending on country) and although this is a good start, often you need more [...]]]></description>
			<content:encoded><![CDATA[<p>ISDN is a fantastic option as a backup in cases where your primary link has failed. However often your primary line has much more bandwidth than a single ISDN line (Channel). The ISDN BRI B-Channels run at 56kb/s or 64 kb/s (depending on country) and although this is a good start, often you need more bandwidth to accommodate the traffic.</p>
<p>ISDN BRI (Basic Rate Interface) interfaces have 2 B-channels. By default when you create a connection using ISDN only one of these channels will dial. In order for us to use the additional B-channel we need to insert an additional command under our BRI interface (PPP Multilink)</p>
<p>Similarly ISDN PRI (Primary Rate Interface) interfaces have (23 B-Channels on T1, 30 B-Channels on E1) each of the channels on a PRI line run at 64kb/s and often we would like to use more than just one channel for our backup.</p>
<p>Although we can have all channels connect immediately when the ISDN becomes active; this results in all lines been billed by the PSTN. Instead we would rather have additional lines been brought up one at a time when the traffic demands it. We can achieve this by defining a load threshold that the line must be under before bringing up additional channels.</p>
<p>The load-threshold command is on a scale from 1 to 255 where 255 is equal to 100% utilisation.</p>
<p><strong>AOIP.ORG(config)# interface bri 2/0<br />
AOIP.ORG(config-if)# ppp multilink<br />
AOIP.ORG(config-if)# dialer load-threshold 128 either</strong></p>
<p>In the above example, I have set a threshold of 128 (50%) and this is based on traffic either inbound or outbound. In order to only monitor traffic inbound, replace ‘either’ with inbound. The same applied to outbound traffic.</p>
<p><strong>NOTE:</strong> In order to use PPP multilink, both sides of the link need to be configured for its use.</p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-switch-type/' rel='bookmark' title='Permanent Link: ISDN Switch-type'>ISDN Switch-type</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/configuring-basic-isdn-with-interesting-traffic/' rel='bookmark' title='Permanent Link: Configuring Basic ISDN with Interesting Traffic'>Configuring Basic ISDN with Interesting Traffic</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/bcmsn/creating-layer-2-and-layer-3-ether-channels/' rel='bookmark' title='Permanent Link: Creating Layer 2 and Layer 3 Ether Channels'>Creating Layer 2 and Layer 3 Ether Channels</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-and-multilink-with-load-threshold/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Floating Static Routes</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/iscw/floating-static-routes/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/iscw/floating-static-routes/#comments</comments>
		<pubDate>Wed, 26 Aug 2009 19:09:36 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[ISCW]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[WAN]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=542</guid>
		<description><![CDATA[In order to have a fully fault tolerant network, a backup solution for WAN links is vital. There are many options for configuring a backup line incase the primary line fails and in this tutorial we are going to look at using floating static routes to achieve a dial-up connection to act as our backup [...]]]></description>
			<content:encoded><![CDATA[<p>In order to have a fully fault tolerant network, a backup solution for WAN links is vital. There are many options for configuring a backup line incase the primary line fails and in this tutorial we are going to look at using floating static routes to achieve a dial-up connection to act as our backup for our primary serial line.</p>
<p> </p>
<p>Using floating static routing as a backup solution works on the following principle.</p>
<p>-          A <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/what-is-a-routing-protocol/">dynamic routing protocol </a>is running over your primary line</p>
<p>-          When the link fails, the routing updates will fail and the routing table will flush</p>
<p>-          A <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-routing/">static route </a>that uses the dial-up interface will become the best route</p>
<p>-          The backup interface will dial and traffic will continue to flow</p>
<p>-          When the primary line comes back up the dynamic routing protocol will fill the routing table, overwriting the floating static.</p>
<p> </p>
<p>NOTE: Any type of dial-up interface may be used (modem / <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-basic-isdn-with-interesting-traffic/">ISDN</a> / 3G etc)</p>
<p> </p>
<p>Based on the above it’s important to understand a few things about routing.</p>
<p>-          A router will look for a route with the longest match (most specific route wins).</p>
<p>-          If more than one identical route exists, the route with the LOWEST <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/cisco-administrative-distance/">administration distance </a>will be inserted into the routing table</p>
<p> </p>
<p>So in order for us to configure floating static routes, we need 2 things configured.</p>
<p>-          A <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/what-is-a-routing-protocol/">dynamic routing protocol </a>MUST be configured for this solution</p>
<p>-          An identical <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-routing/">static route </a>must be created with an administrative distance higher than our routing protocol.</p>
<p> </p>
<p>Example:</p>
<p>If I am running <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-eigrp-on-a-cisco-router/">EIGRP</a> as my routing protocol and it has learnt a route to network 192.168.1.0 /24 with an admin distance of 90 ( EIGRP has an <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/cisco-administrative-distance/">administrative distance </a>of 90 by default). I must create a static route for the network 192.168.1.0 /24 with a next hop of my remote routers dial-up interface. A static route however has a default administrative distance of 1, which at this point would mean it would overwrite my dynamically learnt route and all my traffic would be sent over my dial-up interface leaving me with a rather large phone bill. So when I create my static route it’s imperative that I change the default administrative distance to something higher than that of my routing protocol – I suggest a value of 250.</p>
<p> </p>
<p>My static route would look like this:</p>
<p> </p>
<p><strong>AOIP.ORG(config)# ip route 192.168.1.0 255.255.255.0 10.0.1.1 200</strong></p>
<p> </p>
<p><strong>Destination network :</strong> 192.168.1.0</p>
<p><strong>Subnetmask for destination :</strong> 255.255.255.0</p>
<p><strong>Next hop address of the remote routers dial-up interface:</strong> 10.0.1.1</p>
<p><strong>Administrative Distance :</strong> 200</p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-routing/' rel='bookmark' title='Permanent Link: Static Routing'>Static Routing</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/ccna/cisco-administrative-distance/' rel='bookmark' title='Permanent Link: Cisco Administrative Distance'>Cisco Administrative Distance</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-and-multilink-with-load-threshold/' rel='bookmark' title='Permanent Link: ISDN and Multilink with load-threshold'>ISDN and Multilink with load-threshold</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/iscw/floating-static-routes/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Configuring Basic ISDN with Interesting Traffic</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/iscw/configuring-basic-isdn-with-interesting-traffic/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/iscw/configuring-basic-isdn-with-interesting-traffic/#comments</comments>
		<pubDate>Tue, 25 Aug 2009 14:10:17 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[Access-Lists]]></category>
		<category><![CDATA[ISCW]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[WAN]]></category>
		<category><![CDATA[ISDN]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=537</guid>
		<description><![CDATA[When configuring ISDN with interesting traffic, it’s important to first understand how Cisco defines ‘interesting’ and what this means in terms of the connection been formed. Interesting traffic is traffic that we define in the form of an access-list that is allowed to cause the ISDN to dial. This does NOT mean it is the [...]]]></description>
			<content:encoded><![CDATA[<p>When configuring ISDN with interesting traffic, it’s important to first understand how Cisco defines ‘interesting’ and what this means in terms of the connection been formed. Interesting traffic is traffic that we define in the form of an <a href="http://www.anythingoverip.co.za/networking-101/introduction-to-acls-access-control-list/">access-list </a>that is allowed to cause the ISDN to dial. This does NOT mean it is the only traffic allowed to use the link but this does tie in directly with the idle-timeout value that we need to set on the ISDN interface.</p>
<p> </p>
<p>For example: If I define an access-list that allows telnet and denies everything else, then telnet is the only traffic that will cause my ISDN interface to dial the remote router. Once the line has connected, ANY traffic may flow over the ISDN line. The router is looking purely for ‘interesting traffic’ so if no telnet traffic is sent over the line for the idle-timeout value, the line will drop.</p>
<p> </p>
<p>This type of installation of ISDN is fantastic for very small branch offices that do not need to be connected to HQ permanently and you only need the link to be established for short periods of time. This however is not a good link backup solution.</p>
<p> </p>
<p>In the below configuration we have created an <a href="http://www.anythingoverip.co.za/networking-101/introduction-to-acls-access-control-list/">access-list </a>that will allow telnet traffic to cause the link to be established.</p>
<p> </p>
<p style="text-align: center;"><img class="aligncenter size-full wp-image-539" title="isdn" src="http://www.anythingoverip.co.za/wp-content/uploads/2009/08/isdn.jpg" alt="isdn" width="350" height="79" /></p>
<p> </p>
<p><strong>AOIP.ORG(config)# access-list 102 permit tcp any any eq telnet</strong></p>
<p>Create the Access-list to be used to specify interesting traffic</p>
<p> </p>
<p><strong>AOIP.ORG(config)# dialer-list 2 protocol ip list 102    </strong></p>
<p>The dialer-list defines what traffic is interesting, in this case – Access list 102</p>
<p> </p>
<p><strong>AOIP.ORG(config)# isdn switch-type basic-net3</strong></p>
<p>Define the <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/isdn-switch-type/">switch-type </a>needed for ISDN, This is the settings for BRI interfaces in Europe and Africa</p>
<p> </p>
<p><strong>AOIP.ORG(config)# int bri 2/0</strong></p>
<p>Enter the BRI interface you wish to configure</p>
<p><strong>AOIP.ORG(config-if)# ip address 10.0.1.1</strong></p>
<p>Set an IP address on the ISDN interface</p>
<p><strong>AOIP.ORG(config-if)# encapsulation ppp</strong></p>
<p>Define <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/configuring-ppp-encapsulation/">PPP as the encapsulation </a>method</p>
<p><strong>AOIP.ORG(config-if)# ppp authentication chap</strong></p>
<p>Authentication for PPP has been set to CHAP</p>
<p><strong>AOIP.ORG(config-if)# dialer-group 2 </strong></p>
<p>This tells our ISDN interface to use Dialer-list 2, you will notice the numbers for ‘dialer-group’ and ‘dialer-list’ match</p>
<p><strong>AOIP.ORG(config-if)# dialer idle-timeout 180</strong></p>
<p>If no interesting traffic is sent for 180 seconds, the line will drop</p>
<p><strong>AOIP.ORG(config-if)# dialer map ip 10.0.1.2 name Router2 5551234   </strong></p>
<p>If you need to connect to the IP address 10.0.1.2 (The remote routers ISDN interface), The remote router is name “Router2” and the telephone number to dial is “5551234”</p>
<p><strong>AOIP.ORG(config-if)# no shut</strong></p>
<p> </p>
<p><strong>AOIP.ORG(config)# ip route 192.168.2.0 255.255.255.0 10.0.1.2</strong></p>
<p>Create a <a href="http://www.anythingoverip.co.za/tutorials/course-content/ccna/static-routing/">static route </a>for the remote subnet with a next hop of Router2’s ISDN interface.</p>
<p> </p>
<p><strong>AOIP.ORG(config)# username Router2 password aoip</strong></p>
<p>The remote routers hostname and a password that will be used for PPP authentication</p>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-and-multilink-with-load-threshold/' rel='bookmark' title='Permanent Link: ISDN and Multilink with load-threshold'>ISDN and Multilink with load-threshold</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-switch-type/' rel='bookmark' title='Permanent Link: ISDN Switch-type'>ISDN Switch-type</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/floating-static-routes/' rel='bookmark' title='Permanent Link: Floating Static Routes'>Floating Static Routes</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/iscw/configuring-basic-isdn-with-interesting-traffic/feed/</wfw:commentRss>
		<slash:comments>9</slash:comments>
		</item>
		<item>
		<title>ISDN Switch-type</title>
		<link>http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-switch-type/</link>
		<comments>http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-switch-type/#comments</comments>
		<pubDate>Mon, 24 Aug 2009 14:55:32 +0000</pubDate>
		<dc:creator>Jay</dc:creator>
				<category><![CDATA[ISCW]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[WAN]]></category>
		<category><![CDATA[Dial-UP]]></category>
		<category><![CDATA[ISDN]]></category>

		<guid isPermaLink="false">http://www.anythingoverip.co.za/?p=529</guid>
		<description><![CDATA[In order for any ISDN lines to establish Layer-1 connectivity the switch-type has to be defined correctly. The switch-type is very much country dependant so it’s also important to memorize the switch-type that applies to where you do most of your installations.   If Layer-1 is showing ‘Deactivated’ when using the show isdn status command, [...]]]></description>
			<content:encoded><![CDATA[<p>In order for any ISDN lines to establish Layer-1 connectivity the switch-type has to be defined correctly.</p>
<p>The switch-type is very much country dependant so it’s also important to memorize the switch-type that applies to where you do most of your installations.</p>
<p> </p>
<p>If Layer-1 is showing ‘Deactivated’ when using the <strong>show isdn status</strong> command, only 3 things can be the source of the problem.</p>
<p> </p>
<p>1/ isdn switch-type has not been set, or has not been set correctly (The most common problem)</p>
<p>2/ There is a problem with the PSTN (call your telephony service provider)</p>
<p>3/ Cable problems</p>
<p>4/ Physical port failure on the Router.</p>
<p> </p>
<p>In order to configure the switch-type you can enter the command</p>
<p><strong>Isdn switch-type <em>{switch-type}</em></strong></p>
<p> </p>
<p>This can be done either in global configuration mode, or on the interface depending on the router and IOS version.</p>
<p> </p>
<p>Below are all the switch-type options available<span id="_marker"> </span></p>
<p><span> </span></p>
<p><span> </span></p>
<table border="1" cellspacing="1" cellpadding="0" width="80%">
<tbody>
<tr>
<td>basic-1tr6</td>
<td>German 1TR6 ISDN switches</td>
</tr>
<tr>
<td>basic-5ess</td>
<td>AT&amp;T basic rate switches</td>
</tr>
<tr>
<td>basic-dms100</td>
<td>NT DMS-100 basic rate switches</td>
</tr>
<tr>
<td>basic-net3</td>
<td>NET3 ISDN and Euro-ISDN switches (UK and others), also called E-DSS1 or DSS1</td>
</tr>
<tr>
<td>basic-ni</td>
<td>National ISDN-1 switches</td>
</tr>
<tr>
<td>basic-nwnet3</td>
<td>Norway Net3 switches</td>
</tr>
<tr>
<td>basic-nznet3</td>
<td>New Zealand Net3 switches</td>
</tr>
<tr>
<td>basic-ts013</td>
<td>Australian TS013 switches</td>
</tr>
<tr>
<td>none</td>
<td>No switch defined</td>
</tr>
<tr>
<td>ntt</td>
<td>Japanese NTT ISDN switches (ISDN BRI only)</td>
</tr>
<tr>
<td>primary-4ess</td>
<td>AT&amp;T 4ESS switch type for the U.S. (ISDN PRI only)</td>
</tr>
<tr>
<td>primary-5ess</td>
<td>AT&amp;T 5ESS switch type for the U.S. (ISDN PRI only)</td>
</tr>
<tr>
<td>primary-dms100</td>
<td>NT DMS-100 switch type for the U.S. (ISDN PRI only)</td>
</tr>
<tr>
<td>primary-net5</td>
<td>NET5 ISDN PRI switches (Europe)</td>
</tr>
<tr>
<td>primary-ntt</td>
<td>INS-Net 1500 for Japan (ISDN PRI only)</td>
</tr>
<tr>
<td>primary-ts014</td>
<td>Australian TS014 switches (ISDN PRI only)</td>
</tr>
<tr>
<td>vn2</td>
<td>French VN2 ISDN switches (ISDN BRI only)</td>
</tr>
<tr>
<td>vn3</td>
<td>French VN3 ISDN switches (ISDN BRI only)</td>
</tr>
<tr>
<td>vn4</td>
<td>French VN4 ISDN switches (ISDN BRI only)</td>
</tr>
</tbody>
</table>


<p>Related posts:<ol><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/configuring-basic-isdn-with-interesting-traffic/' rel='bookmark' title='Permanent Link: Configuring Basic ISDN with Interesting Traffic'>Configuring Basic ISDN with Interesting Traffic</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-and-multilink-with-load-threshold/' rel='bookmark' title='Permanent Link: ISDN and Multilink with load-threshold'>ISDN and Multilink with load-threshold</a></li><li><a href='http://www.anythingoverip.co.za/tutorials/course-content/iscw/floating-static-routes/' rel='bookmark' title='Permanent Link: Floating Static Routes'>Floating Static Routes</a></li></ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.anythingoverip.co.za/tutorials/course-content/iscw/isdn-switch-type/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
	</channel>
</rss>

