04-27-2011 11:49 AM - edited 03-06-2019 04:49 PM
I am having a problem configuring TCP intercept.
I follow the example in the configuring TCP Intercept PDF (attached) I downloaded from Cisco.
In the terminal configuration mode, I enter:
access-list 101 permit tcp any 192.168.1.0 0.0.0.255
(using my actual IP address range of course)
and
ip tcp intercept list 101
.
I get an invalid entry response from the IOS with the ^ under the i in intercept.
I am not running NAT.
Any ideas?
Solved! Go to Solution.
04-27-2011 11:58 AM
Check the IOS version in Cisco Feature Navigator. It may not be supported.
04-27-2011 11:58 AM
Check the IOS version in Cisco Feature Navigator. It may not be supported.
04-27-2011 12:18 PM
I am running c3845-advsecurityk9-mz.151-3.T. It is not listed as supporting TCP Intercept. So now I know why I can't configure it. Strange that other versions of 15.1(3) do but this one doesn't. It never occured to me that some version of a base IOS wouldn't support all the features supported by the base IOS. Thanks.
Manny
04-27-2011 12:20 PM
Happens to us all my friend.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide