Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Device: Cisco ISR 1811IOS: 15.1(4)M5 Advanced IP ServicesI seem to be unable to access any IKEv2 features. The command crypto ikev2 is not available. Everything I've read suggests IKEv2 is available in this IOS version.Is there something I'm missing?
So after talking to over 10 different Cisco employees, getting a 60/40 split in answers and being transfered to every Cisco department I'm officialy at witts end.Very simple. Cisco 891. Need the latest IOS version. So i fire up the Cisco Service Find...
Normally I'd have a rough idea of where to start, but I'm not sure if this is a NAT/ZBF or IPSEC issue at this stage.Without the crypto map map1 assigned to the outside interface, everything works fine. Internal hosts can access the internet, I can p...
I know this can be done with Host Scan or Secure Desktop but unfortunetaly we only have an AnyConnect essentials icense and just can't justify the cost for Premium given our needs.I would however like to only allow AnyConnect connections from company...
I have a requirement to access one of our outside interface IP addresses from inside the network.The scenario is we have teleworker devices that we provision in house before sending out. These devices cannot use a hostname but must be programmed with...
"SFP interface is a combination port, shared with one other RJ-45 interface. When the SFP is active, the adjacent RJ-45 port is disabled"
Since the Quick Start specs published by Cisco are wrong on this, I figured I'd get clarification on stacking ...
It has been rebooted a few times now. I'm dumbfounded myself. I've gone over the config 1000+ times an I just don't see anything wrong. Currently waiting on my service contract for entitlement to download the latest IOS. See if's a bug. Other than th...
Ok update. I had to wait for some down time.With the tunnel up I'm seeing the following. From what I can tell that indicates to is seeing packets it thinks should be going over the tunnel but aren't encrypted so it drops them, which would indicate an...
Thanks for following up. That is just a typo on my part. The dumped config was missing that deny ACE so I typed it in manually when I posted the running-config. It is correct on the device itself.Going to take another stab at this later today. Unfort...
NAT appears to be working correctly. I took the ZBF completely out so the router was free for all. Confirmed traffic was working. Applied the crypto map again. Once again tunnel traffic worked but everything else ceased to pass.I'm completely baffled...