Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, I am new to WAAS and testing this setup: datacenter (site A) and branch (site B). CM and core WAE 512 at site A and WAE 511 in site B. I am using WCCP negociated return because the WAE's are on server subnet in site A and client subnet in site ...
Hi,Would anyone know what the impact might be on a DMVPN if I were to rename/recreate the internal IOS CA Server hostname and trustpoint? I assume I would have to re-create the RSA certs and trustpoint from scratch. And then, I'd have to go to each...
Hi,I have a DMVPN with RSA certs (and an internal IOS CA Server on a router) that have been up for many months, however, recently, the spoke certs have started expiring. Since auto-renew is enabled, I granted the "pending" certs on the CA server but...
Hi, I have been unable to get the following to work... Is it even possible? If not, what would I need? WAAS?1 HQ site, 1 branch site. An AD Domain Controller is located at each site. A Sharepoint server is located in HQ and I would like to have ...
I want to implement a DMVPN but my spoke routers are SOHO series running 12.3(8)T3 and it seems like none of the images available support NHRP.Are there any alternatives that would allow mGRE with IPSec?Any idea if NHRP will be included in a future r...
Ran into same issue on a 2621XM CA server running advanced security IOS 12.4(15)T8.I rebooted the router, and the CA service runs fine until I looked into the info request database, and approved the cert for a spoke, I got the following:cry pki ser [...
It seems your post has pointed me to the right direction.Using CM, in each Device, under Acceleration / Policy Definition, I edited the "N/A" Application Policy Classifier Action from "Passthrough" to "Full Optimization" and now I see F,F,F,F. I tho...
Aha! All connections show as "PT...". And, I see tons of pass-through traffic in the CM's monitoring tab, and zero savings.All 3 WAAS WAEs run 4.0.19.14.Core routers doing the redirection on the GRE/IPSec tunnel interfaces to the branch (61 out/62 ...
Hi Zach, actually, yes, I do see connections on both WAE's and they happen to be when I access intranet sites at either site remotely. I also see some TCP 3389 connections, which was expected. Some connections show as "PT App Cfg" and others as "PT...
For an IOS CA Server running 12.4(11)T3/ADV SECURITY... what would I need to check to verify this is the case? I followed the SRND and never saw anything related to rekeying.Also, wouldn't a rekey on a remote client be disruptive? I mean, if it's s...