Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I am using a Cisco PIX 515E running 7.0 and I can't find any way of restricting the source address for VPn client users that access my VPN device. I want to apply the restriction not globally, but only for a particular group policy or tunnel group...
Hi,I have added an NM-VPN/MP= accelerator on my 3600 to increase VPN throughput. Since then, I can't ping anything through the tunnel. Does this module need to be enabled in the config?Regards,Anthony Hassiotis
Hi,I have setup 2 different VPN client configurations on a PIX 515E 7.0 and although one is working fine, the other fails to connect. The error I get on the debug messages is: %PIX-7-711001Can't find a valid tunnel group, aborting...!Anyone has any i...
Hi,I have built two different VPN client configurations on a PIX 515E 7.0 and although the config seems exactly the same, one is working fine when the other is failing to make a connection. I have pasted the config below, the working VPN profile is w...
Hi,I was wondering whether there is a way to tell the firewall to display the IP addresses of hosts and networks rather than the names that have been configured with the names command when I do a show run.The obvious problem I have is when I want to ...
Correct! I have already tried the vpn-filter command and I can't see the point of it. It's like another access-list this time applied to the group-policy rather than the tunnel-group and it only applies to the already encrypted packets. I also know t...
Thanks for that, I have now spent a lot of time on this problem. I already came accross this command and it was enabled by default. In fact I could see packets going through the accelerator card. I had this tunnel working fine a couple of weeks ago a...
Hi Cristian,I don't have any experience with VPN acceleration on 3750, but what I'd like to note, is that you wouldn't expect to see as much as 100Mbps from a 100M interface. Depending on packet size you would get between 65-80Mbps. 100MB is only see...
Hi,I would suggest you create another Outside VLAN/interface on your firewall and put the new address space on that.Then create secondary IP addresses on your web and FTP servers and create new NAT mapping for those on your firewall.You might get pro...
Hi,I had the same problem between a PIX 515 7.0 and PIX 501 6.3.I built the tunnel-group on the 515 using ASDM VPN wizard which I gave a name (the default is that it uses the IP address of the peer). So when I then looked at the config:show run | gre...