Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
We are needing to restrict printing down to a select few hosts within our network to a specific printer on the same network. When going into the Firewall portion of our Cisco MX64W, in the Layer 7 section, I've noticed it only allows us to create a D...
Hello Support Forum,
I am completely new to the ASA/Firewall world, and I have a question regarding the upgrade process from my ASA5520 to the new ASA5525-X security appliance. I was able to recreate everything from the 5520 in the 5525-X ASA, howev...
We are experiencing an issue where a Site-to-Site VPN branch office is able to communicate with our CUCM Publisher (192.168.1.x/24) residing on an MPLS network on the backside of our data center switch, however, it cannot communicate with the CUCM Su...
We had some numbers relocated from a PRI circuit as VTNs on a SIP trunk and began to received Error 4404 at our outside interface when placing calls to the numbers. We programmed the dial-peer (23) into the router, and have never had an issue with t...
Help understanding/confirming the implementation of Cisco UC in a Site-to-Site VPN network environment.
Current Platform: Cisco Unified Communications 8.6.x
Current LAN Configuration
Multiple branch offices are connected to a single data center usin...
Thanks Mloraditch,Unfortunately, they are on the same VLAN which I always encourage that printers be placed on their own within the network for security reasons/purposes. It doesn't appear the Layer 3 rules allows for any restriction of inside traffi...
Thank you, AlemabrahaoI've noticed in the Layer 3 there's only an Inbound and Outbound option, nothing to restrict inside traffic talking to each other. Is this typical of the MX64W not allowing rules for inside traffic?
This issue has been resolved.
I rebuilt the tunnel using just the following settings on each side of the tunnel.
access-list inside_nat0_outbound extended permit ip object-group MPLS_Voice object-group Branch_Networks
access-list outside_cryptomap_2 ...
Pawan,
Thanks for your response. I actually do have the following static route in the DC ASA pointing toward the DC Switch:
route inside 192.168.110.0 255.255.255.0 192.168.150.2 1
I have also uploaded the crypto sa information for the tunnel concer...
Jonathan,
Thank you for taking the time to respond to my inquiry.
1. Unfortunately, we had to move the numbers back to the PRI temporarily to keep them operational, so a failed call with the debug I assume isn't an option at this point to gain any ...