Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
A user called me that an ATA had failed so they ordered a new one and changed the MAC in CME and it wasn't working.
It turned out, the POTS line was bad so it was fixed. Now, we can't get either (new or old) ATA to register with CME.
I think everythi...
I have a client with existing fax numbers on PRI. The PRI terminates on a Cisco router and sends the incoming faxes to an eFAX software using H323.
I want to forward calls for a specific number to another external number.
For example, the existing ...
Weird problem here. I have a Site-to-Site VPN that isn't working. Both ASAs have other Site-To-Site VPNs working on them. I know the configuration is correct because it was working fine for months and it hasn't changed.
I have both a successful Phas...
Hello All,
I'm having problems accessing a certain site via HTTPS. I see some weird stuff happening.
First I'm seeing this in the logs:
Nov 19 2015 10:36:29: %ASA-4-419002: Duplicate TCP SYN from inside:10.10.138.34/61730 to outside:12.23.45.56/443 ...
I have a setup that has two firewalls. Our webfilter running WCCP is on the inside of the second firewall. WCCP redirection is configured on the second firewall. ISP ----> ASA5520 ----> WAN ----> ASA5515 ----> filter When I enable WCCP on the ASA5520...
Thanks Mohammed.
That's already set to 1 by default. Or that setting didn't change. It is set to 1. I've set it to 0, rebooted, changed to 1, rebooted with no change.
Any other suggestions?
I've done both of those! I was even able to pull the tftp file manually. I deleted the ephone, verified the config file wasn't there, recreated the ephone and generated the files and verified the cnf files were created.
The ATA doesn't seem to be re...
How do I change it? I haven't figured that out yet. I did a factory reset on both ATAs. I would figure that setting would default to enable if it needed to be enabled.
I think I read somewhere that "TFTP Enabled" was for something else but I can't f...
Hello,
That probably isn't related but check to see that you have the appropriate authentication server specified under the tunnel-group you are using for AnyConnect
It looks like you don't have a valid isakmp policy which is why you have a MM_NO_STATE.
Try adding:
crypto ikev1 policy 20 authentication pre-share encryption aes-192 hash sha group 2 lifetime 86400
to both ASAs