Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I have a requirement to implement NAC using the NAC Appliance (Cisco Clean Access). Does anyone know if this will work correctly with CTA in the same way that the NAC framework would do?? I am interested as I wish to use the Cisco Secure Service...
Hi all, I have a question regarding authentication for ISAKMP/IKE. I'd like to use RSA-SIG as the most secure option, however my client doesn't have any CA available and doesn't want one! I've read some conflicting information from Cisco docs, some ...
Hi. I have an issue with a 2800 series with a basic configuration on it. we have a situation where by the router is connected to a subnet (10.32.1.0/24) via int FA0/0. This is a management link to a customers site to which all the customers equipme...
Hi Adrian, When you run either the ASA series or PIX series in multiple context mode, VPN is not supported so you would need a seperate device to run the VPN access on. If its only a small VPN requirement then something like the base model 5510 wou...
Hi,Cisco pix firewalls do not respond to ping attempts directly to their interfaces by default, this is to ensure the firewall itself does not get hit by a denial of service attack. Dependant on your rule base you may or may not be able to ping thro...
Hi, regualar interval drops in ping attempts are often due to anti DOS configurations on devices, I see this quite often, it varies in the drops sometime the pattern will be !....!....!....!, other times it will be as you are seeing. Do you manage t...
Hi, if you use the following commands the tunnels will be cleared and the security associations will be reset.clear crypto ipsec saclear crypto isakmp saThis should help.Please rate this post.CheersRob
Hi Paul.Ok, if you've found that turning off RIP completely has now stopped you being able to ping then RIP must have been propogating routes that you need and don't have in the static config.Can you post the followingThe static route configuration o...