customer unable to connect to vpn endpoint when going through a MSB. He changes the gateway on the host to use the ASA as the exit point and has no problems.The endpoint is reachable from either the MSB or ASA.Any know issues with MSB and Cisco clien...
what is the name of the capture file in the filesystem. In the cli it is called "file-info". We need to be able to pull the file from the sensor instead of using the copy commnad to push the file using the CLI.
where can I find more information about the below messages? The IPS version is 6.0(4)E1 S319Error TX Queue full, lost buf 464Error TX Queue full, no yet lost buf 464 if = 0DBMemoryResourcesCritical 2 Hits 2Total.
is there a command you can use when logged in using the service account to stop and start the ips processes. I'd like to try that before having to reboot the device. It currently shows the MainApp as not running
I've had this happen to ASA models 5510 and 5520 with either ssm-10 or ssm-20 ips modules. I was told by Cisco the solution is to upgrade to version 7.0(1)E3 which I have done and still get that problem. I was then told it may be an issue of the ips ...
got the solution from another co-worker so sharing:The "bigmss (MTU) fixup" is used when VPN is not connecting from hosts behind a MSB firewall. Symptoms are:- no ISAKMP return traffic seen by the client- the "test" rule allowing ISAKMP inbound incre...
One of my co-workers found it. It is located in the directory /usr/cids/idsRoot/var and there will be 2 files associated with the capture:-rw-r--r-- 1 root cids 8392 Jul 17 18:33 packet-file-rw-r--r-- 1 cisco cids 135 Ju...