Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Sure this is a very common issue, but having looked through a number of the similar threads, can't see any specific help for this. I'm using Windows 10 with the Anyconnect client from the App Store, it creates a VPN profile in the Windows 10 settings...
Guys I've spun up the Multi-IOS sandbox to use the VIRL instance therein to do some Ansible playing. Whatever I do though, I can't seem to find username and password info for the Ubuntu 16.04 instances that get fired up as part of my topology. Any ...
HiI have a lab config with two "data centre" firewalls and a "remote site" firewall. The remote site has a crypto map defined with two peer addresses. If the firewall in DC1 goes down, the remote site connects to the firewall in DC2 successfully an...
FolksWe have a brand new 2 x 3750-X stack running 15.0(1)SE3 with C3KX-NM-10Gs installed in each switch. An HP C-Class server enclosure with Virtual Connect Flex-10 modules is connected to each of the 10G ports using twinax cables and they seem to b...
Does anybody have a good reference to explain why many QoS features require CEF to be enabled, and how the two interact? I've seen the Cisco doc:http://www.cisco.com/en/US/tech/tk39/tk824/technologies_tech_note09186a0080094978.shtmlBut this only tel...
Thanks for that - no, not what I was looking for. I created a topology of my own with a couple of servers in it (they're Ubuntu 16.04 boxes) and when I spun it up I couldn't get onto them with any of the creds I had available. Was wondering which c...
OK, having put this to TAC, I have been informed that this is the way it is. I intend to submit an enhancement request so that when DPD marks the peer as down that it flags it so for a period of time; either that or a user-definable timeout value fo...
Just as a further note - I have the logs or a 'debug crypo isakmp' on the remote site firewall which clearly show that the DPD doesn't mark the peer as dead, only tears down its SAs when it detects it is no longer there: Jun 18 2013 00:52:46: %ASA...