02-23-2012 03:46 PM - edited 03-11-2019 03:34 PM
I have a IOS firewall on a 2921 router, zone-based config. The remote and main sites have Cisco WAAS , running 4.4.1 software. I am using WCCP redirection on the WAAS/router combination. If I leave it off the firewall passes SSH correctly to the devices on the other side of the firewall. If I enable WCCP the SSH connections fail. The SSH to the router itself is fine, I am not using the self zone for router protection. I had seen a few posts on WAAS but the only one mentioning a config statement in the firewall was on 4.0 WAAS and the command is no longer on the IOS firewall. Is this supposed to work transparently or am I missing a config?
The system is
main site WAAS - WCCP to router - Router------ MPLS 3rd party -------router w/IOS firewall (2921 15.1 code) - wccp redirection to WAAS - infrastructure subnet (with wAAS, switches)
Any help is appreciated, thanks,
Solved! Go to Solution.
02-29-2012 01:06 PM
Hello,
These links should answer your questions:
WAAS Support for the Cisco IOS Firewall
Configuring the Cisco IOS Firewall with WAAS
Example: Cisco IOS Firewall Configuration with WAAS
-Mike
02-29-2012 01:06 PM
Hello,
These links should answer your questions:
WAAS Support for the Cisco IOS Firewall
Configuring the Cisco IOS Firewall with WAAS
Example: Cisco IOS Firewall Configuration with WAAS
-Mike
02-29-2012 02:37 PM
That did it. Thanks for the help. FYI - in 15.x the ip inspect waas enable command is hidden, it does not show on the ip inspect ? list
Sent from Cisco Technical Support iPad App
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide