Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello, I know from reading the latest admin guide (9.13), configuring VTI on multi-context mode is not supported. Does anyone know if it's on a road map to have it be included? It's a nice feature to have to support BGP over IPSEC tunnels using VTI b...
Hello - I am looking to use the Nexus 93240YC-FX2 switch in our data center.I have a question on the following ports are allocated:48 x 1/10/25 Gbps fiber ports12 x 40/100 Gbps QSFP28 portshttps://www.cisco.com/c/en/us/products/switches/nexus-93240yc...
Hi all,
Using the ZBFW policies on a Cisco router running IOS-XE software, you have to permit the ISKAMP UDP 500 on the self-to-outside & outside-to-self zone pair in order to originate and receive the VPN traffic. My question is why do I have to sp...
Hello-I've created a policy map to allow TCP probe options 76 - 78 on the ASA Firewall for our Riverbed appliance. Here is the setup:access-list tcp-traffic line 1 extended permit tcp any any class-map tcp-traffic match access-list tcp-traffictcp-map...
Hello-Does anyone know if it's possible to apply a wccp 62 redirect in on the outside interface to capture both sides of the conversation? We need this to be able to redirect the return traffic back to a WAN optimization appliance for cloud accelerat...
Someone did respond to my post here with the following URL linking to a bugid enforcement. My understanding is there is no timeline on when this will be implemented. https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve69229
I have a similar question about what is the best possible shortest match for the following prefixes below:
2001:0:0:7::/64
2001:0:0:8::/64
2001:0:0:9::/64
2001:0:0:10::/64
I thought it would be 2001::/60 but I am confused on how it would be /59....
Hello, I am looking to renew an upcoming expire SSL certificate used for AnyConnect. I am using a separate network device F5 to generate the CSR for the renewal request which is the same private key as the one on the ASA. How do I import just the new...
Thanks... I've included more information. Let me know if this helps you see the complete view. Again I "x" out the IP addresses and password information. What's strange is the head-end needs the GRE to be permitted on the self ACL while the branch do...