Security Knowledge Base

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Webinar

 
Labels

Knowledge Base Articles

ResolutionComplete these steps to set up an IPsec VPN tunnel between a PIX Firewall and a Symantec Enterprise Firewall:1.  Configure the Internet Key Exchange (IKE) proposal on both devices.2.  Configure the IPsec parameters on both devices.3.  Speci...

TCC_2 by Level 10
  • 1957 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue occurs due to the presence of Cisco bug ID CSCsg37315.This issue occurs when VPN tunnels are configured on the router in conjunction with Context-Based Access Control (CBAC).When this issue occurs, the Invalid Segment tcp error m...

TCC_2 by Level 10
  • 1763 Views
  • 0 comments
  • 0 Helpful votes

Core issueOne possible reason is the proxy identities (interesting traffic, Access Control List (ACL) or crypto ACL) are not matching on both the ends.ResolutionCheck the configuration on both the devices, and make sure that the crypto ACLs match.For...

TCC_2 by Level 10
  • 2164 Views
  • 0 comments
  • 0 Helpful votes

Core issueThere are a few reasons that a VPN tunnel may not to come up on Adaptive Security Appliance (ASA). One reason might be the Proxy Address Resolution Protocol (ARP).When a host sends IP traffic to another device on the same Ethernet network, ...

TCC_2 by Level 10
  • 3369 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue occurs when an inappropriate Maximum Transmission Unit (MTU) size is configured on the router. ResolutionThis issue occurs because the IPsec VPN adds an overhead to the packet, which can cause it to surpass the valid MTU. The def...

TCC_2 by Level 10
  • 3044 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue is documented in Cisco bug ID CSCsb94643.The crash dump analysis shows:Address        function          file:line000109E8       b_free            buffer.c:49400010874       b_free            buffer.c:435005F6BB8       p2IBDReleas...

TCC_2 by Level 10
  • 810 Views
  • 0 comments
  • 0 Helpful votes

Core issueThe error message appears when the IP address is not configured at all the specific, required locations.ResolutionComplete these steps in order to resolve this issue:$BASEDIR/CSU/libdb.confChange the IP_Addr value to the new IP address.$BAS...

TCC_2 by Level 10
  • 1018 Views
  • 0 comments
  • 0 Helpful votes

ResolutionThe event definitions for Cisco VPN 3000 Series concentrators with VPN OS Software 4.7 are available at the CCO Software CenterNote: A CCO ID is required to login to this screen.Once logged in, go to Software Center (Downloads) > VPN Softwa...

TCC_2 by Level 10
  • 663 Views
  • 0 comments
  • 0 Helpful votes

Core issueThe problem can occur when the signatures 1330/12 and 1330/17 are denying inline for legitimate traffic.Note: The 1330 signatures, by default, deny inline but do not produce alerts.Resolution1330 has 19 subsignatures. In order to resolve th...

TCC_2 by Level 10
  • 111 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis problem occurs due to the presence of Cisco bug ID CSCsd86017.The enable password for TACACS+ fails to authenticate if these conditions are met:The Use Separate Password option is set explicitly.  An external authentication source (for...

TCC_2 by Level 10
  • 1316 Views
  • 0 comments
  • 0 Helpful votes
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Top Contributors
Featured Article