Security Knowledge Base

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

“Webinar

 
Labels

Knowledge Base Articles

Core issueThese are two of the possible reasons for the normal Waiting state error message:A configuration mistake when the standby IP address is provided.Portfast is not enabled on switch ports.ResolutionComplete these steps for a workaround:Check i...

TCC_2 by Community Member
  • 9931 Views
  • 0 comments
  • 0 Helpful votes

ResolutionComplete these steps to set up an IPsec VPN tunnel between a PIX Firewall and a Symantec Enterprise Firewall:1.  Configure the Internet Key Exchange (IKE) proposal on both devices.2.  Configure the IPsec parameters on both devices.3.  Speci...

TCC_2 by Community Member
  • 2027 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue occurs due to the presence of Cisco bug ID CSCsg37315.This issue occurs when VPN tunnels are configured on the router in conjunction with Context-Based Access Control (CBAC).When this issue occurs, the Invalid Segment tcp error m...

TCC_2 by Community Member
  • 1861 Views
  • 0 comments
  • 0 Helpful votes

Core issueOne possible reason is the proxy identities (interesting traffic, Access Control List (ACL) or crypto ACL) are not matching on both the ends.ResolutionCheck the configuration on both the devices, and make sure that the crypto ACLs match.For...

TCC_2 by Community Member
  • 2214 Views
  • 0 comments
  • 0 Helpful votes

Core issueThere are a few reasons that a VPN tunnel may not to come up on Adaptive Security Appliance (ASA). One reason might be the Proxy Address Resolution Protocol (ARP).When a host sends IP traffic to another device on the same Ethernet network, ...

TCC_2 by Community Member
  • 3500 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue occurs when an inappropriate Maximum Transmission Unit (MTU) size is configured on the router. ResolutionThis issue occurs because the IPsec VPN adds an overhead to the packet, which can cause it to surpass the valid MTU. The def...

TCC_2 by Community Member
  • 3319 Views
  • 0 comments
  • 0 Helpful votes

Core issueThis issue is documented in Cisco bug ID CSCsb94643.The crash dump analysis shows:Address        function          file:line000109E8       b_free            buffer.c:49400010874       b_free            buffer.c:435005F6BB8       p2IBDReleas...

TCC_2 by Community Member
  • 902 Views
  • 0 comments
  • 0 Helpful votes

Core issueThe error message appears when the IP address is not configured at all the specific, required locations.ResolutionComplete these steps in order to resolve this issue:$BASEDIR/CSU/libdb.confChange the IP_Addr value to the new IP address.$BAS...

TCC_2 by Community Member
  • 1077 Views
  • 0 comments
  • 0 Helpful votes

ResolutionThe event definitions for Cisco VPN 3000 Series concentrators with VPN OS Software 4.7 are available at the CCO Software CenterNote: A CCO ID is required to login to this screen.Once logged in, go to Software Center (Downloads) > VPN Softwa...

TCC_2 by Community Member
  • 767 Views
  • 0 comments
  • 0 Helpful votes

Core issueThe ability to ping the Cisco Secure ACS Solution Engine 3.3 from within the LAN is disabled by default. The Cisco Secure ACS Security Appliance is a hardened, locked-down system and is designed with security in mind. The Cisco Secure ACS S...

TCC_2 by Community Member
  • 1281 Views
  • 0 comments
  • 0 Helpful votes

ResolutionComplete these steps:Make sure the static command is entered correctly and that it does not overlap another static command. This is an example of overlapping static commands:static (inside,outside) 199.1.1.1 10.10.10.1static (dmz,outside) 1...

TCC_2 by Community Member
  • 972 Views
  • 0 comments
  • 0 Helpful votes
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Top Contributors
Featured Article