ip-stories.com

  • www.IP-Stories.Com is IPv6 Enabled WeBlog.
    You are connected on IPv4 : 38.107.179.231
  • Visitor by Countries

  • Categories

  • Hurricane Electric IPv6 Certified

    IPv6 Certification Badge for risnaini
  • IND-IPv6 Sites

  • Site References From

  • Visitors

  • Search This Blog :

[Cisco] BGP Routes not Exist in Show IP Route

Posted by admin on May 16th, 2012

Symptom :

Prefix exist in BGP Routing from Peer Address
Prefix has best route.
Prefix not in the table on Show Ip Route

Action : Clear your Peer Address without soft or soft inbound.
Noted : Have this action scheduled if this is a production :)

GW-1#sh ip bgp 192.168.253.0
BGP routing table entry for 192.168.253.0/27, version 230968
Paths: (1 available, best #1, table Default-IP-Routing-Table)
Advertised to update-groups:
9 10 12 13
Local, (Received from a RR-client), (received & used)
192.168.235.94 from 192.168.235.94 (192.168.251.133)
Origin IGP, metric 0, localpref 100, valid, internal, best

GW-1#sh ip route 192.168.253.0
Network Not on the Table

a. rahman isnaini r.sutan

Posted in technologies | No Comments »

[Windows7] To log off logged on user by Admin

Posted by admin on May 3rd, 2012

Once you have logged on as admin to Windows 7, you realize that other user had not logged off yet.
This allowed user previously used your desktop.
The problem is he/she might play a music or movie player and it’s running and annoying.
Second big problem : You don’t know his/her Password :)

Anyway, as admin you can do this

1. Go to Task Manager
2. Click User Tab
3. Right Click the User
4. Click Log off

a. rahman isnaini r.sutan

Posted in security, windows 7 | No Comments »

[Juniper] BGP AS-Path Error “invalid character class in AS-path regex”

Posted by admin on May 3rd, 2012

I found this error BGP As-Path Message on JunOS 9.x
This error “invalid character class in AS-path regex” appears right away after committing a change of BGP As Path Regular Expression

What I have done : Set new different AS-PATH name for the similar regular expression and remove the existing. If the message still appear, then you have to do the same thing till committing success

=====================================================
admin@JNX-JK2A# show | match 23698
as-path “VIPNET#1″ “.* 23698 46059″;

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# commit
[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
‘as-path’
invalid character class in AS-path regex “.* 23698 46059|.* 24522 38774|.* 24532 38788|45298|.* 38147 18004|.* 10217 (38143|452
error: configuration check-out failed

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# set as-path VIPNET “.* 23698 46059″

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# delete as-path VIPNET#1

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# commit
[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
‘as-path’
invalid character class in AS-path regex “.* 24522 38774|.* 24532 38788|45298|.* 38147 18004|.* 10217 (38143|45296|38777|9657)|
error: configuration check-out failed

admin@JNX-JK2A# commit
[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
‘as-path’
invalid character class in AS-path regex “.* 24532 38788|45298|.* 38147 18004|.* 10217 (38143|45296|38777|9657)|.* 45701|.* 460
error: configuration check-out failed

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# show | match 24532
as-path INET “.* 24532 38788|45298″;

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# as-path
^
unknown command.
admin@JNX-JK2A# as-pathINET
^
unknown command.
admin@JNX-JK2A# set as-path INET#1 “.* 24532 38788|45298″

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# delete as-path INET

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# commit
[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
‘as-path’
invalid character class in AS-path regex “.* 38147 18004|.* 10217 (38143|45296|38777|9657)|.* 45701|.* 46050|.* 4761 .*|.* 1792
error: configuration check-out failed

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# show | match 38147
as-path INOVANET “.* 38147 18004″;

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# set as-path as-path INOVANET#1 “.* 38147 18004″
error: syntax error: .* 38147 18004

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# delete as-path INOVANET

[edit policy-options as-path-group EXCHANGE-MEMBERS-TRANSIT]
admin@JNX-JK2A# commit
commit complete

=======================================
Below may also causing the error.

as-path MO-13 “.* 23947 38278 132104)”;

Posted in BGP | No Comments »

[BGP] 4 Bytes ASN at Indonesia Internet Exchange

Posted by admin on April 26th, 2012

From MLC

* 203.201.176.0/24 103.28.74.173 38782 131165 I

* 203.201.177.0/24 103.28.74.173 38782 131165 I

* 203.201.178.0/24 103.28.74.173 38782 131165 I

* 203.201.179.0/24 103.28.74.173 38782 131165 I

Posted in BGP, Indonesia-IX (IIX) | No Comments »

[Security] Kaspersky KSC Error Installation

Posted by admin on March 15th, 2012

It’s been two days, now.
I used to install KSC very quickly on some windows engines.
But not yesterday.

Error always found during MSSQL Express 2005 installation.
The message of error :

“Installing Prerequisite MSSQL Express resulted in error. Install it manually using the …[path]”
Even you manually install this, you’ll face the same error.

How to get rid of this… ?
Usually this might happened on windows pc which has many drives.
Reinstall fresh Windows on C, would swipe the existing bad virus.
But clicking drive D or another drive, would “wake” the virus up and reinfect the C.

So NEVER touch another drives, until you have installed new antivirus, clean another drives.

a. rahman isnaini r.sutan
inspired by Ferry Pakpahan BPRSUM

Posted in security | No Comments »

[Cisco] Running BGP on Secondary IP ? Yes, It Can be.

Posted by admin on February 14th, 2012

Limited infrastructure gives you no choice to run BGP using secondary IP Address on a Cisco Router.
No more today.
With IOS version Enterprise 12.4(6) T-11, now you can.

c7200-adventerprisek9_sna-mz.124-6.T11.bin

Previously we have to running BGP with a Loopback IP Address update interface.
And this loopback address routed using secondary point to point ip address.
Now, BGP session can running with this secondary IP Address.

interface GigabitEthernet0/1.888
encapsulation dot1Q 888
ip address 192.168.74.164 255.255.254.0 secondary
ip address 172.16.4.164 255.255.255.128
ipv6 address 2001:7FA:2::88/64
ipv6 enable

192.168.74.129   4  65597   11552   10281    81639    0    0 3d13h        4744
172.16.4.129     4  65597   11554   10280    81639    0    0 3d13h        4744

a. rahman isnaini r.sutan

Posted in BGP, Cisco | No Comments »

[IPv6] DDoS Attack Mitigation Tools by Arbor Special Report

Posted by admin on February 8th, 2012

Posted in IPv6, security | No Comments »

[Juniper] Two VRRP Groups on Single (One) Interface with Different IP Addresses

Posted by admin on January 25th, 2012

1. Router A
ge-0/0/0 {
unit 0 {
family inet {
address 192.168.53.130/23
vrrp-group 100 {
virtual-address 192.168.53.129;
priority 100;
accept-data;
}
}
address 192.168.54.130/23 {
vrrp-group 200 {
virtual-address 192.168.54.129;
priority 100;
accept-data;

2. Router B
ge-0/0/0 {
unit 0 {
family inet {
address 192.168.53.131/23
vrrp-group 100 {
virtual-address 192.168.53.129;
priority 200;
accept-data;
}
}
address 192.168.54.131/23 {
vrrp-group 200 {
virtual-address 192.168.54.129;
priority 200;
accept-data;

by Joko Mahendro (IIX Volunteer)

Posted in Juniper, VRRP | No Comments »

[News Flash] Wikipedia Blacking Out

Posted by admin on January 18th, 2012

Posted in technologies | No Comments »

[IPTV] Enable GPON OLT to Support IGMP Snooping for IPTV Multicast

Posted by admin on January 13th, 2012

Multicast can become a head ache in a narrow bandwidth infrastructure.
Anyway, IGMP helps much more to implement related multicast technologies such IPTV..
Specially to reduce the multicast bandwidth which can occupy all the way path to the end user.

Let say, there are 50 channels of TV needed to be streamed out from an IPTV head end.
Each of channel requires 2 Mbps of bandwidth.
Without IGMP, the total bandwidth broadcasted UDP ly.. to end user : 100 Mbps.
Therefor, user with limited bandwidth cannot accommodate and tolerance against this requirement.

By enabling IGMP, end user only needs 2 Mbps of bandwidth to play the IPTV channel.
And if the STB Off, no unwanted multicast bandwidth coming

Wiki Doc –

IGMP snooping is the process of listening to Internet Group Management Protocol (IGMP) network traffic. IGMP snooping, as implied by the name, is a feature that allows a network switch to listen in on the IGMP conversation between hosts and routers. By listening to these conversations the switch maintains a map of which links need which IP multicast streams. Multicast may be filtered from the links which do not need them.

The configuration (we are streaming two channels to all over network).

interface vlan23
ip address 192.168.10.254/24
ip igmp snooping querier

If you want to view statistics for ONT,
You need to configure PM (Performance Management) for ONT as follows.

gpon-omch
onu pm 3/3 1

The output

GPON-OLT# show gpon onu real-bps 3/3 1 1

================================================================================
|   ONU   | UNI |        TIME        |         TX         |         RX         |
——————————————————————————–
|  3/3  1 |   1 | 15:14:36- 15:14:59 |      1,989,197 bps |              0 bps |
================================================================================

GPON-OLT# show gpon onu real-bps 3/3 1 1

================================================================================
|   ONU   | UNI |        TIME        |         TX         |         RX         |
——————————————————————————–
|  3/3  1 |   1 | 15:14:36- 15:14:59 |      1,989,197 bps |              0 bps |
================================================================================

Thanks to Choo, LS Cable Korea.

a. rahman isnaini r.sutan

Posted in IPTV, Multicast | No Comments »