[cisco-voip] remote 7960 behind a 501 tweaks

Timothy Frazee timfrazee at gmail.com
Fri Dec 9 13:08:18 EST 2005


Does anybody have any tips/tricks to improve voice quality on my 501

 

I know I cant load 7 to officially get support for voice but this is what I
have so I gots to make it work.... you know.

 

Attached is my running config off my 501

 

interface ethernet0 auto

interface ethernet1 100full

nameif ethernet0 outside security0

nameif ethernet1 inside security100

enable password xxxxxxxxxxxxxxxxx encrypted

passwd xxxxxxxxxxxxxxxxxxxx encrypted

hostname xxxxxxxxxxxxxxxxxx

domain-name xxxxxxxxxxxxxxxxxxx

clock timezone CST -6

clock summer-time CDT recurring

fixup protocol dns maximum-length 512

fixup protocol ftp 21

fixup protocol h323 h225 1720

fixup protocol h323 ras 1718-1719

fixup protocol http 80

fixup protocol rsh 514

fixup protocol rtsp 554

no fixup protocol sip 5060

fixup protocol sip udp 5060

no fixup protocol skinny 2000

fixup protocol smtp 25

fixup protocol sqlnet 1521

fixup protocol tftp 69

no names

access-list inbound permit tcp any any eq 8662 

access-list inbound permit udp any any eq 8672 

access-list inbound permit tcp any any eq 6881 

access-list inbound permit tcp any any eq 8881 

access-list inbound permit udp any any eq 8881 

access-list inbound permit icmp any any 

pager lines 24

logging on

logging timestamp

logging trap notifications

logging host inside 10.100.0.150 format emblem

icmp permit any inside

mtu outside 1500

mtu inside 1500

ip address outside dhcp setroute

ip address inside 139.126.119.110 255.255.255.248

ip audit info action alarm

ip audit attack action alarm

pdm logging debugging 100

pdm history enable

arp timeout 14400

global (outside) 1 interface

nat (inside) 1 0.0.0.0 0.0.0.0 0 0

static (inside,outside) tcp interface 8662 10.100.0.10 8662 netmask
255.255.255.255 0 0 

static (inside,outside) udp interface 8672 10.100.0.10 8672 netmask
255.255.255.255 0 0 

static (inside,outside) tcp interface 8881 10.100.0.10 8881 netmask
255.255.255.255 0 0 

static (inside,outside) udp interface 8881 10.100.0.10 8881 netmask
255.255.255.255 0 0 

access-group inbound in interface outside

route inside 10.100.0.0 255.255.255.0 139.126.119.109 1

route inside 10.200.200.0 255.255.255.0 139.126.119.109 1

timeout xlate 3:00:00

timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h225
1:00:00

timeout h323 0:05:00 mgcp 0:05:00 sip 0:30:00 sip_media 0:02:00

timeout uauth 0:05:00 absolute

aaa-server TACACS+ protocol tacacs+ 

aaa-server TACACS+ max-failed-attempts 3 

aaa-server TACACS+ deadtime 10 

aaa-server RADIUS protocol radius 

aaa-server RADIUS max-failed-attempts 3 

aaa-server RADIUS deadtime 10 

aaa-server LOCAL protocol local 

ntp server 192.5.41.41 source outside

ntp server 192.5.41.40 source outside

http server enable

http 10.200.0.0 255.255.255.0 inside

snmp-server location Frazee Data Center

snmp-server contact Timothy Frazee

snmp-server community public

no snmp-server enable traps

floodguard enable

sysopt connection permit-ipsec

isakmp enable outside

isakmp nat-traversal 20

telnet 192.168.0.0 255.255.255.0 inside

telnet 139.126.119.0 255.255.255.0 inside

telnet 139.126.174.0 255.255.255.0 inside

telnet 10.100.0.0 255.255.255.0 inside

telnet timeout 60

ssh xxxxxxxxxxxxxxxxxxxxxxxx outside

ssh 10.100.0.0 255.255.255.0 inside

ssh timeout 60

management-access inside

console timeout 60

dhcpd address 139.126.119.105-139.126.119.109 inside

dhcpd dns 139.126.174.22 139.126.12.13

dhcpd wins 139.126.174.22 139.126.12.113

dhcpd lease 600

dhcpd ping_timeout 750

dhcpd domain ds.ad.adp.com

dhcpd option 150 ip 139.126.174.51

vpnclient server 63.144.123.169

vpnclient mode network-extension-mode

vpnclient vpngroup xxxxxxxxxxxxxxxxxxxx password ********

vpnclient username xxxxxxxxxxxxxxxxxxxx password ********

vpnclient enable

terminal width 80

 

 

 

 

 

 

The setup is

 

Charter communications home cable internet with 3 down and 512 up to a cisco
501 to a 2950 with qos and vlans setup

 

My 7940 hangs inside of one of the vlans off the 2950

 

 

 

Any help would be great, thanks

-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://puck.nether.net/pipermail/cisco-voip/attachments/20051209/f930f777/attachment-0001.html


More information about the cisco-voip mailing list