Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi All,I need to connect some routers to an ASA using IPSec tunnels. The goal is to get netflow traffic from the routers to a collector behide an ASA using IPSec tunnels.Recently I found out (locally orginated) netflow isn't properly encrypted when s...
Hi GuysCould anyone help me with the following issue?I want to filter traffic between two ezvpn (ios) clients. The hub is an ASA running 8.04 code.client1 is allowed to access the local networks of client2, but client2 is not allowed to access client...
Hi All,I'm trying to NAT the source address of incoming ssl traffic to the physical inside interface. So on the inside network all ssl traffic should be sourced from the inside interface. Does anyone know if this is possible? I was trying something l...
Hi There, I'm trying to implement a L3VPN on top of a satellite network. This medium brings some very specific characteristics. A router transmits using one frequency and receives on all other frequencies. Every frequency, means a separate modem and ...
Hello, I do have a couple of questions, any info would be greatly appreciated. In a N7K / N5K / N2K datacenter environment using FabricPath (both on the N5k and de N7K), and classic Ethernet devices connected using vPC and/or orphan ports. Could pl...
Hi Marcin,Thanks for you answer. So are you saying that even if you could somehow match the ipsec settings, the traffic selector would still mesh up things on the ASA ?Hielke
Hi Federico,I agree both clients should be able to reach each other inside network. In fact this is indeed the case if I don't use any filter acl at all.So1. Yes permit intra-interface is in the cfg2. ??? this is ezvpn there is no crypto acl3. I chec...
Hi Federico,Thx for your reply, both clients are in NEM mode.Both clients can reach the inside network. But client1 can't reach the inside network of client2 (which it should)When I'm sourcing a ping from client1 inside netwerk to client2 inside netw...