Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Good day Experts
I have a problem; two ASAs 5555 are configured in Active/Standby HA. The internet facing interfaces connect to a switch, then ISP routers. The failover links go through a nexus switch spanned across two data centers using high-spee...
Hi Team,Recently I tried upgrading from 8.2 to 8.3 and/or 8.4 and I encountered the following error:........ERROR: failed to generate command for replication*** Output from config line 1272, "group-policy GroupPolicy..."The upgrade goes through, but ...
Good day
This worked 100%. I have modified the script as follows:
ip sla 1 icmp-echo 1.1.1.1 frequency 5ip sla schedule 1 life forever start-time now!event manager applet DownInterfaceCore event syslog pattern "%TRACKING-5-STATE: 1 ip sla 1 state Up...
Hi All,I just got to the bottom of this:The error was specifically on the following line: group-policy GroupPolicy1 external server-group MY_AUTH_SERVIn my aaa-server configurations I had this: aaa-server MY_AUTH_SERV protocol ldapI got the answer fr...
Hi Jack,Please check your interface access-lists (even though I doubt this could be an issue because the traffic went through the first time), try to inspect icmp, run the captures on the inside interface to see if the traffic gets back, check if sys...
Hi Jack,After changinig your interesting traffic ACLs, did you clear the crypto SAs and IPSEC SAs and allowed the tunnel to re-establish with the new settings?If so, what is the debug saying?e.g. debug crypto isakmp 10Check the bebug carefully and se...