Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
In my lab i have router c2801 + c3750 and two phones: 7941 and 7960. All refurbished. 7960 works for me, is registered. Problem is with 7941. Phone gets ip address from dhcp server but on the phone i still see: upgrading, then cisco and again upgrad...
Hello,
I have C3560G (12.2(25)SEE3 C3560-IPSERVICES-M) and C3550-IPSERVICESK9-M) connected via trunk with many vlans.
There are two vlans with multicasts from different customers and i need forward multicasts between them. I don't have any router ...
Hello,
I have asa 5515 (os: 9.5(2)6) , 3 vpn s2s to branches (asa5506) and strange problem with one prefix which asa5515 can't send via ipsec tunnel. Other prefixes, to other branches are send without problem. Also other prefixes via the same tunnel...
Hi,
I have wlc 2504 with authorization active directory via 802.1x with ise 2.0. It was some problem with tls 1.2 so i have applied patches number: 1,2,3. After that i can login from all android os versions, ios and linux but not from windows 7. I ...
Hi,
Let's say we have the following configuration
access-list vpn1 extended permit ip 192.168.1.0 255.255.255.0 10.0.0.0 255.0.0.0
crypto map mymap 10 match address vpn1
crypto map mymap 10 set peer x.x.x.x
access-list vpn2 extended permit ip 1...
From TAC:
There is a well known bug for the same issue which got fixed in 9.5.2(99) however you are in 9.5.2 (6) which is effected by the bug please upgrade to the new version which has this bug fix, Or the work around may work most of the times. Be...
After about 30 hours it happend again - asa stopped forward packets via ipsec tunnel to certain destination address. To make this working again i had to reload standby unit and then make this unit active. Change only role in cluster is not enough, r...
After reboot whole cluster (first standby, then active) it worked for 4 hours.
After 4 hours problem occured again so i have replaced active unit with standby unit. Since 2 hours it works for me. Now i have to wait some time and observe.
looks that there were not any inactive SPI. It can be a problem that i use cli and my colleagues use asdm ? I see also something like asymmetry in crypto ipsec sa and few hits in crypto acl. however it should be much more hits. I got info that somet...
hmm strange.. i have in crypto acl:
access-list branch_2_cryptomap line 2 extended permit ip host 10.10.83.205 101.61.11.128 255.255.255.128
but packet tracer shows drop
Phase: 6Type: VPNSubtype: encryptResult: DROPConfig:Additional Information: For...