cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
264
Views
0
Helpful
1
Replies

ASA5510 v7.0.7 ignoring ACL changes!

davegibelli
Level 1
Level 1

I have made changes to nat and IPSec ACL's but the new lines in the ACL's are being ignored!

This results in packets that should be sent encrypted going out unencrypted even though the packets match the ACL.

On a different interface new rules for nat are not taking effect, thus packets are leaving the ASA without being natted!

Active/Failover in operation.

1 Reply 1

Ivan Martinon
Level 7
Level 7

Did you change these Crypto ACl's on the fly? Meaning did you remove crypto map, change settings and reapply the crypto map? If not then you need to bounce the tunnel to make this new changes occur. Were these changes applied on the remote end as well?

Review Cisco Networking for a $25 gift card