Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, I am trying to connect to ASA device which has self signed certificate with ipsec/ikev2. However could not succeed either from IE or from Anyconnect standalone client. With debug logs I could only figure out AAA/SHIM Invalid Access Protocol. B...
Hi, I could not connect from an anyconnect stand alone client to asa. Client shows "Unable to process response from x.x.x.x" error message ASA debug webvpn anyconnect doesn't show any debug information. However debug http shows below EVET-5580-0...
Hi, Can someone explain what is the meaning of nat aliasing and when do we use nat no-alias command. I could not understand the notes given in cisco docs clearly. So any example would be helpful.Thanks,Radhika
Hi, Can I know what this command does - 'ip route 0.0.0.0 255.255.255.255 x.x.x.x'. Is it just when a packet matches the ip 0.0.0.0 then it would be forwarded to x.x.x.x? If so, when will a packet have the ip 0.0.0.0? Please clarify. Thanks,Rad...
Hi Shilpa, I found the problem. Its because the "Protocol" in profile is mentioned as "IPSec" instead of "IPsec". After changing it I could establish the connection. However I can connect after installing Anyconnect from the Browser. With s...
Hi Shilpa, With the above debug commands enabled I could just see "AAA/SHIM: Invalid Access Protocol." I tried all the combination you mentioned already. However it does not work. Connection can be established if "AAA Authentication" is remov...
Hi Nicolas, Yes I was not putting the port number in anyconnect client. Also in the xml the ip address was not proper. I changed both of them and it works fine now Thanks for the solution,Radhika
From 3.1.1 SP1 log I can see "PolicyNotFound" Exception. So just giving suggestion - Restart the services, move the workflow mode;check if there are any activities which are not in discard or approved mode. If so then discard all the activities. Try ...