Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi All,
I have a question regarding a NAT on an ASA, seeing if it is possible or the best solution to my problem - before I try it as it needs to go through some change control etc.
I need to access some devices via a wireless network and whilst ...
Hi,
We have a pair of 5585x's configured as an active/active failover pair. They are in multi-context mode with two groups.
Following issues recently we are seeing contexts with similar logging as this:
%PIX-1-105005: (Primary) Lost Failover commun...
Hi All,
Quick question for you. I have two wireless lan controllers at different locations: at Location A:WLC2125-K9 licensed for 25 AP's, and at Location B: WLC2106 licensed for 6AP's. I appreciate these are end of life and the best recommendat...
Hi All,
I'm hoping someone can help with an issue we currently have. Possibly with mobility in our Wireless system. We are running WLC5508's in two seperate locations, if one fails all APs associated to it should fail over to the alternate. Software...
Hi All,
I have a stupid question so apologies in advance. I understand the natting etc but...
what is the best nat command for the pre-8.2 static nat subnet range nat for something like:
static (inside,outside) 1.1.1.0 1.1.1.0 netmask 255.255.2...
Hi Aditya,
Thanks for the response. All context VLANs concerned are port-channelled down to a Layer 2 Nexus 5K pair. The failover and Stateful connections take a different route to a layer 2 switch stack and these show no errors. Logs do not sho...
Yes, I added the rule for permit icmp any any unreachable for the interface concerned. I get a helathy count on this rule but I still see the above being reported. We always use an permit icmp any any in the access-list on each interface anyway.
The previous version would have been 8.4 - not sure of exact version as this has been upgraded and redployed. Remote end did some analysis and reported they are seeing the local IP in the sip traffic. The VOIP server has NAT traversal enabled. When I...
Hi Daniel, So if I change for the following:policy-map type loadbalance first-match LB-QW class MATCH-QW serverfarm REDIRECT-QW class class-default sticky-serverfarm STK_WEB443_FRNpolicy-map type loadbalance first-match PML_WEB443_FRN cla...
Thanks. In testing just now I found that since I have LOCAL authentication for SSH and telnet access to the firewall, the following command was successful:crypto map outside_map client authentication LOCAL