<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SysAdmin Valley &#187; cisco</title>
	<atom:link href="http://www.sysadminvalley.com/tag/cisco/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.sysadminvalley.com</link>
	<description>I might as well write this stuff down so I remember it tomorrow</description>
	<lastBuildDate>Tue, 18 May 2010 17:22:04 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Configuring Cisco ASA 5505 with primary &amp; backup ISP</title>
		<link>http://www.sysadminvalley.com/2010/03/23/configuring-cisco-asa-5505-with-primary-backup-isp/</link>
		<comments>http://www.sysadminvalley.com/2010/03/23/configuring-cisco-asa-5505-with-primary-backup-isp/#comments</comments>
		<pubDate>Tue, 23 Mar 2010 13:13:44 +0000</pubDate>
		<dc:creator>mshields</dc:creator>
				<category><![CDATA[networking]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[asa]]></category>
		<category><![CDATA[backup]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[firewall]]></category>

		<guid isPermaLink="false">http://www.sysadminvalley.com/?p=222</guid>
		<description><![CDATA[Here&#8217;s an example config for configuring an ASA5505 with primary and backup ISP&#8217;s. ASA5505(config)# interface ethernet 0/0 ASA5505(config-if)# switchport access vlan 2 ASA5505(config-if)# no shutdown ASA5505(config)# interface ethernet 0/1 ASA5505(config-if)# switchport access vlan 1 ASA5505(config-if)# no shutdown ASA5505(config)# interface ethernet 0/2 ASA5505(config-if)# switchport access vlan 3 ASA5505(config-if)# no shutdown ASA5505(config)# interface vlan 1 ASA5505(config-if)# nameif [...]]]></description>
			<content:encoded><![CDATA[<p>Here&#8217;s an example config for configuring an ASA5505 with primary and  backup ISP&#8217;s.</p>
<blockquote>
<pre dir="ltr">ASA5505(config)# interface ethernet 0/0
ASA5505(config-if)# switchport access vlan 2
ASA5505(config-if)# no shutdown

ASA5505(config)# interface ethernet 0/1
ASA5505(config-if)# switchport access vlan 1
ASA5505(config-if)# no shutdown

ASA5505(config)# interface ethernet 0/2
ASA5505(config-if)# switchport access vlan 3
ASA5505(config-if)# no shutdown

ASA5505(config)# interface vlan 1
ASA5505(config-if)# nameif inside
ASA5505(config-if)# security-level 100
ASA5505(config-if)# ip address 192.168.1.1 255.255.255.0
ASA5505(config-if)# no shutdown

ASA5505(config)# interface vlan 2
ASA5505(config-if)# nameif primary-isp
ASA5505(config-if)# security-level 0
ASA5505(config-if)# ip address 100.100.100.1 255.255.255.0
ASA5505(config-if)# backup interface vlan 3
ASA5505(config-if)# no shutdown

ASA5505(config)# interface vlan 3
ASA5505(config-if)# nameif backup-isp
ASA5505(config-if)# security-level 1
ASA5505(config-if)# ip address 200.200.200.1 255.255.255.0
ASA5505(config-if)# no shutdown

ASA5505(config)# route primary-isp 0.0.0.0 0.0.0.0 100.100.100.2 1
ASA5505(config)# route backup-isp 0.0.0.0 0.0.0.0 200.200.200.2 2</pre>
</blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.sysadminvalley.com/2010/03/23/configuring-cisco-asa-5505-with-primary-backup-isp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Basic Configuration for a Cisco 2621 part 2</title>
		<link>http://www.sysadminvalley.com/2010/03/23/basic-configuration-for-a-cisco-2621-part-2/</link>
		<comments>http://www.sysadminvalley.com/2010/03/23/basic-configuration-for-a-cisco-2621-part-2/#comments</comments>
		<pubDate>Tue, 23 Mar 2010 13:09:35 +0000</pubDate>
		<dc:creator>mshields</dc:creator>
				<category><![CDATA[networking]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[point to point]]></category>
		<category><![CDATA[router]]></category>
		<category><![CDATA[T1]]></category>

		<guid isPermaLink="false">http://www.sysadminvalley.com/?p=209</guid>
		<description><![CDATA[Here&#8217;s a sample config you might use for a Cisco 2600 router for a point to point T1. The Cisco would need to have a built in CSU/DSU for this configuration. Router#sh run Building configuration... Current configuration : 1158 bytes ! version 12.3 service timestamps debug datetime msec service timestamps log datetime msec no service [...]]]></description>
			<content:encoded><![CDATA[<p>Here&#8217;s a sample config you might use for a Cisco 2600 router for a  point to point T1.  The Cisco would need to have a built in CSU/DSU for  this configuration.</p>
<blockquote>
<pre dir="ltr">Router#sh run
Building configuration...

Current configuration : 1158 bytes
!
version 12.3
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
!
boot-start-marker
boot-end-marker
!
no aaa new-model
ip subnet-zero
!
ip cef
!
interface FastEthernet0/0
 no ip address
 shutdown
!
interface Serial0/0
 description outside interface
 ip address 100.100.100.1 255.255.255.252
 no ip directed-broadcast
 service-module t1 timeslots 1-24
 set cdp disable
 no shutdown
 no fair-queue
!
interface FastEthernet0/1
 description inside interface
 ip address 200.200.200.1 255.255.255.0
 speed 100
 full-duplex
!
ip default-gateway 100.100.100.2
ip http server
ip classless
ip route 0.0.0.0 0.0.0.0 100.100.100.2
!
line con 0
line aux 0
line vty 0 4
 login
!
!
end</pre>
</blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.sysadminvalley.com/2010/03/23/basic-configuration-for-a-cisco-2621-part-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Basic Configuration for a Cisco 2621</title>
		<link>http://www.sysadminvalley.com/2010/03/23/basic-configuration-for-a-cisco-2621/</link>
		<comments>http://www.sysadminvalley.com/2010/03/23/basic-configuration-for-a-cisco-2621/#comments</comments>
		<pubDate>Tue, 23 Mar 2010 13:08:33 +0000</pubDate>
		<dc:creator>mshields</dc:creator>
				<category><![CDATA[networking]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[router]]></category>

		<guid isPermaLink="false">http://www.sysadminvalley.com/?p=206</guid>
		<description><![CDATA[Here is a basic configuration for a Cisco 2621 using interface FastEthernet0/0 to connect to your ISP, and FastEthernet0/1 to connect to your local network. Router#sh run Building configuration... Current configuration : 1158 bytes ! version 12.3 service timestamps debug datetime msec service timestamps log datetime msec no service password-encryption ! hostname Router ! boot-start-marker [...]]]></description>
			<content:encoded><![CDATA[<p>Here is a basic configuration for a Cisco 2621 using interface  FastEthernet0/0 to connect to your ISP, and FastEthernet0/1 to connect  to your local network.</p>
<blockquote>
<pre dir="ltr">Router#sh run
Building configuration...

Current configuration : 1158 bytes
!
version 12.3
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
!
boot-start-marker
boot-end-marker
!
no aaa new-model
ip subnet-zero
!
ip cef
!
interface FastEthernet0/0
 description outside interface
 ip address 100.100.100.1 255.255.255.252
 speed 100
 full-duplex
!
interface Serial0/0
 no ip address
 shutdown
 no fair-queue
!
interface FastEthernet0/1
 description inside interface
 ip address 200.200.200.1 255.255.255.0
 speed 100
 full-duplex
!
ip default-gateway 100.100.100.2
ip http server
ip classless
ip route 0.0.0.0 0.0.0.0 100.100.100.2
!
line con 0
line aux 0
line vty 0 4
 login
!
!
end</pre>
</blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.sysadminvalley.com/2010/03/23/basic-configuration-for-a-cisco-2621/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Configuring Basic Cisco Router Security</title>
		<link>http://www.sysadminvalley.com/2010/03/23/configuring-basic-cisco-router-security/</link>
		<comments>http://www.sysadminvalley.com/2010/03/23/configuring-basic-cisco-router-security/#comments</comments>
		<pubDate>Tue, 23 Mar 2010 13:08:01 +0000</pubDate>
		<dc:creator>mshields</dc:creator>
				<category><![CDATA[networking]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[router]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.sysadminvalley.com/?p=204</guid>
		<description><![CDATA[Network security is a hot topic today, and will only increase in importance in the months and years ahead. While most of the attention is paid to exterior threats, there are some steps you can take to prevent unwanted Cisco router access from within your organization. Whether you want to limit what certain users can [...]]]></description>
			<content:encoded><![CDATA[<p>Network security is a hot topic today, and will only increase in  importance in the months and years ahead.</p>
<p>While most of the attention is paid to exterior threats, there are some  steps you can take to prevent unwanted Cisco router access from within  your organization.</p>
<p>Whether you want to limit what certain users can do and run on your  routers, or prevent unauthorized users in your company from getting to  config mode in the first place, here are four important yet simple steps  you can take to do so.</p>
<p><strong>Encrypt the passwords in your running configuration.</strong></p>
<p>This is a basic Cisco router security command that is often overlooked.   It doesn&#8217;t do you any good to set passwords for your ISDN connection or  Telnet connections if anyone who can see your router&#8217;s running  configuration can see the passwords.  By default, these passwords are  displayed in your running config in clear text.</p>
<p>One simple command takes care of that.  In global configuration mode,  run service password-encryption. This command will encrypt all clear  text passwords in your running configuration.</p>
<p><strong>Set a console password.</strong></p>
<p>If I walked into your network room right now, could I sit down and start  configuring your Cisco routers?</p>
<p>If so, you need to set a console password.  This password is a basic yet  important step in limiting router access in your network.  Go into line  configuration mode with the command &#8220;line con 0&#8243;, and set a password  with the password command.</p>
<p><strong>Limit user capabilities with privilege level commands.</strong></p>
<p>Not everyone who has access to your routers should be able to do  anything they want.  With careful use of privilege levels, you can limit  the commands given users can run on your routers.</p>
<p>Privilege levels can be a little clumsy at first, but with practice  you&#8217;ll be tying your routers down as tight as you like.  Visit <a href="http://www.cisco.com/univercd" target="_blank">www.cisco.com/univercd</a> for documentation on configuring privilege levels.</p>
<p><strong>Configure an &#8220;enable secret&#8221; password.</strong></p>
<p>It&#8217;s not uncommon for me to see a router that has an enable mode  password set, but it&#8217;s in clear text.</p>
<p>By using &#8220;enable secret&#8221;, the enable mode password will automatically  be encrypted.  Remember, if you have an enable password and enable  secret password set on the same router, the enable secret password takes  precedence.</p>
<p>These four basic steps will help prevent unwanted router access from  inside your network.  If only preventing problems from outside your  network was as simple!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sysadminvalley.com/2010/03/23/configuring-basic-cisco-router-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Router (801) ISP ISDN Config Example</title>
		<link>http://www.sysadminvalley.com/2010/03/23/cisco-router-801-isp-isdn-config-example/</link>
		<comments>http://www.sysadminvalley.com/2010/03/23/cisco-router-801-isp-isdn-config-example/#comments</comments>
		<pubDate>Tue, 23 Mar 2010 13:06:57 +0000</pubDate>
		<dc:creator>mshields</dc:creator>
				<category><![CDATA[networking]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[isdn]]></category>
		<category><![CDATA[router]]></category>

		<guid isPermaLink="false">http://www.sysadminvalley.com/?p=200</guid>
		<description><![CDATA[Here is an example ISDN config for a Cisco 801 router version 12.0 ! no ip domain-lookup isdn switch-type basic-net3 ! ! ! interface Ethernet0 ip address 172.16.1.1 255.255.255.0 no ip directed-broadcast ip nat inside ! interface BRI0 ip address negotiated no ip directed-broadcast ip nat outside encapsulation ppp dialer string (put ISDN phone number [...]]]></description>
			<content:encoded><![CDATA[<p>Here is an example ISDN config for a Cisco 801 router</p>
<blockquote>
<pre dir="ltr">version 12.0
!
no ip domain-lookup
isdn switch-type basic-net3
!
!
!
interface Ethernet0
ip address 172.16.1.1 255.255.255.0
no ip directed-broadcast
ip nat inside
!
interface BRI0
ip address negotiated
no ip directed-broadcast
ip nat outside
encapsulation ppp
dialer string (put ISDN phone number here)
dialer-group 1
isdn switch-type basic-net3
no cdp enable
ppp chap hostname (Put username here)
ppp chap password (Put password here)
!
router rip
network 172.16.0.0
!
ip nat translation timeout 180
ip nat inside source list 1 interface BRI0 overload
ip http server
ip classless
ip route 0.0.0.0 0.0.0.0 BRI0
!
access-list 1 permit 172.16.0.0 0.0.255.255
access-list 100 deny ip any host 172.16.255.255
access-list 100 permit ip any any
dialer-list 1 protocol ip list 100
alias exec u undebug all
!</pre>
</blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.sysadminvalley.com/2010/03/23/cisco-router-801-isp-isdn-config-example/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New website: Cisco Sphere</title>
		<link>http://www.sysadminvalley.com/2009/09/14/new-website-cisco-sphere/</link>
		<comments>http://www.sysadminvalley.com/2009/09/14/new-website-cisco-sphere/#comments</comments>
		<pubDate>Mon, 14 Sep 2009 12:52:12 +0000</pubDate>
		<dc:creator>mshields</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[cisco]]></category>

		<guid isPermaLink="false">http://www.sysadminvalley.com/?p=125</guid>
		<description><![CDATA[I have setup a new website for people who use Cisco products called Cisco Sphere.  I&#8217;m hoping that it will grow to be a helpful website for those who need help with their Cisco products.]]></description>
			<content:encoded><![CDATA[<p>I have setup a new website for people who use Cisco products called <a href="http://www.ciscosphere.com" target="_blank">Cisco Sphere</a>.  I&#8217;m hoping that it will grow to be a helpful website for those who need help with their Cisco products.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.sysadminvalley.com/2009/09/14/new-website-cisco-sphere/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
