Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Dear geeks,I have two locations say HO and DR.HO have two internet links one LL (connected to asa ) and one ADSL.(connected to pix)DR having one internet ADSL. (connected to asa) Now i have a site to site from LL ho to adsl DR. i want to configure ...
Dear geeks,I have two sites lets call it main and dr connected via ipsec site to site vpn from cisco asa to cisco asa at both the ends. I also have Remote access vpn on both the ends to the main site as well as on the dr site. Now the question is if...
dear all,i am trying to establish a site to site ipsec vpn with asa on one end with a static ip and and ios router at the other end with a dynamic ip. iam trying to initiate the tunnel from the router side and when i debug the asa the its gng to defa...
hi Geeks,is there any way out to reserve or prioritize some bandwidth from the firewall to a particular public ip address.All the traffic from the firewall to this ip should be prioritised or possibly want to reserver some bandwsidth for this traffic...
Dear karthik, THanks for the reply.do you mean i mention two peer ip addresses in a single crypto map ??one ip address for leased line internet in ho and secondary ip for the adsl public ip in ho ?the peer ip one two in this the ip one gets most pr...
HI marvin, thanks for the reply .so from the core sw on the main site i just route the ra vpn subnet to the asa which is terminating the vpn on main site and add it to the crpyot acls and nat exeption acls so the traffic to the ra subnet reaches the...
iam getting only this nothing else.ASA1(config)# debug crypto Mar 01 04:23:36 [IKEv1]: Connection failed with peer'10.1.105.5', no trust-point defined for tunnel-group 'DefaultRAGroup'Mar 01 04:23:36 [IKEv1]: Group = DefaultRAGroup, IP = 10.1.105.5, ...
HI andew,i tried configuring a new ipsec-ra kind of tunnel-group and mentioned the trust point in the ipsec-attributes but still the remote router when initiating the connectin is raking defaultra group.what are we missing here from above config.plea...