Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, I have a 2960 24TC-S catalyst switch with current lan lite software which only supports 64 vlans. I have to install it to a company which needs at least 255 vlans. Is it possible for this model to be upgraded to an IOS with more vlans lik...
Hello,I have setup a Win2003 Server where I install a CA/RA server for SCEP enrollment of my ASA5510. I entered the following config on the ASA:domain-name mydomain.comcrypto key generate rsacrypto ca trustpoint MYTRUSTPOINT crl optional enrollme...
Hello,I have a PIX 515 running version 7.2.2. I want to inject a default route on the inside and on the dmz only. How do I do this? I tried to use the default information originate command but it also inject the default route into the outside interfa...
Hello!I have been trying to get the L2TP over IPSec using Digital Certificates (PIX -Win2K Client) working for weeeks now but unfortunately I failed. On the Win2Kclient I keep getting the message saying no valid certificate was found. I haveconfigure...
Hello,I have been trying to connect a VPN Client for remote access to a PIX515E (using version 7.2(2). I can get to the user authentication window, but after I enter the username and password, I get the status "Not Connected". I tried to run "debug c...
Hi,I have quite similar problem with IOS SSL VPN (WebVPN). This time with login to ACS. This is my simplified diagram:(ACS)----------------R1------------------R3-------------------- (client)I can enter the ACS's URL and see the login page. but when i...
Hi Ivan,In my testing here are my findings:Given the diagram:R1(ipsec endpoint)(g0/0)--------------------R7(nat device)----------------------------R3(ipsec endpoint)R7 translates R1's g0/0 IP address1. Static NAT - dont care (this means when NAT-T is...
Hi Ivan,It is the IPSec ESP tunnel. I tried issuing the command "no crypto ipsec nat-transparency udp-encaps"and "no crypto ipsec nat-transparency spi-matching" on both VPN endpoints.I noticed however, that when the NAT device is changed to PAT, then...
Hi yuhuiyao,I have similar intentions in my network. but when I tried in lab testing i still get IPSec packet encrypted and tunnel built up even i disabled ipsec nat-transparency on both routers. I tried to use different router model and still get IP...
Hi,This is exactly what I need. I do not need to configure DMVPN but purely mGRE. I cannot find conclusive document that focuses only on the primary functions of mGRE (as standalone) feature.We are trying to establish connectivity between spoke and H...