Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi all,I have a Cisco ASA (8.2) setup with remote access for my users using Cisco VPN client. The authentication is passed off to my ACS 5.3 which then checks with AD. What I've done so far is create Access Policy rule where I define specifically the...
Is the process the same as with any IOS upgrade? Upload image to both SUPs. Reboot secondary and see if it comes up stable. Force failover after. Running redundant SUP720s on a 6509-E.
Hi all,I'm trying to redistribute the statics the ASA injects using reverse-routing and its not doing it. It will redistribute static routes I add in there but not the ones injected via RRI. Here is the config I am using.ip local pool VPNPool172.20.1...
Please reference the attached diagram. Remote Site is currently connected to Site A and Site B via GRE/ipsec tunneling running EIGRP. Site A and Site B WAN side are connected to MPLS and both exchange bgp route. On the CE routers in each site BGP and...
Hey all,OSPF question. My core switch sees Router A and Router B as DROTHERS and is learning say 10.10.10.0/24 from both. How do I force it to prefer one path wthout impacting any other route it learns?
The configuration looks correct. Is that the full config however? I don't see the ACL bound to your interface. Can you make sure this is in?access-group outside_in in interface outside
Shell access simply restricts the commands you are allowed to use but does not deny the actual login into the ASA. The actual profile to prohibit someone from logging into the ASA also stops them from authenticating with their VPN because both reques...
I'm assuming that was from an ACS version older than 5.x? By the way on the F5 configuration it requires that you include a Service Name (or populate it with something) or else it won't save the TACACS+ configration. What did you all put in? PPP?
HI Federico,Correct I am trying to redistribute the statics on the ASA into EIGRP. And yes I do see the static routes on the ASA (even the VPN ones). However only the statics I manually configure are redistributed. The ones that are injected from RRI...