Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi. I'm having a really weird issue on an ASA 5506 firewall where i'm trying to use DH Group20 on a VPN tunnel. For some odd reason on my crypto map it only gives me the option to set groups 1,2, or 5. But if I were to change the name of the crypto m...
Hi. I'm looking to accomplish exactly what's posted in this link.
https://supportforums.cisco.com/document/12110341/routing-traffic-between-two-site-site-vpn-tunnels
However, I can't seem to get traffic from point C back to point A. If i packet trac...
Hi,
I'm having an issue with a Cisco WAP unable to join the controller. I keep seeing the below but I have no idea why it won't join. I only have remote console access to the WAP at this time.
Apr 6 23:57:26.470: Starting Ethernet promiscuous mode*A...
Hello! I was wondering if I can get some opinions on doing a network as a Full Mesh or Hub and Spoke design. I have about 20 sites all over with primarily Cisco ASA firewalls anywhere from 5505, 5506, 5510, 5520, 5515 and they all have site-to-site V...
Hey everyone. I have an ASA firewall connected at a site and I'm noticing a lot of packet loss on the inside interface. The duplex and speed are set to auto, so they've negotiated to 100/Full. But even with that I still see heavy packet loss. I'm not...
Really appreciate the help! you were exactly right. Once i removed the last line in bold I was good to go. I didn't realize I added that in there. Thanks again!
crypto map CRYPTO-MAP 10 match address ACL_1_VPN_TUNNELcrypto map CRYPTO-MAP 10 set pfs...
Now seeing a bit of this:
%CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER
But i can ping the controller IP and the DNS record "CISCO-CAPWAP-CONTROLLER" with no problems.
What's your taking on this one? This one is the ASA alerting of dropped packets on the inside interface.
Frame drop: IPSEC tunnel is down (ipsec-tun-down) 198 VPN reclassify failed (vpn-reclassify-failed) 14 Invalid IP header (invalid-ip-header) 10 ...