Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I have an external public IP address on my 2130 HA pair. the .1 is on the primary unit and the .2 is th HA standby IP for the standby unit. If I point anyconnect at the main external interface public IP I can connect and vpn works fine My question is...
2130 HA pair running 6.4.0.1. I am setting up outgoing NAT/PAT. There are several internal interfaces with their own private subnets. My intent is to IP masquerade all outgoing connections from internal private subnet A to a pool of public IP's on my...
For my external interface on a 2130 pair in HA I have a port channel definedOn that external port channel, I have a sub-interface defined that has the main external IP which is part of a /23 public subnet on vlan 254 I am trying to add additional pub...
I have 2 routers with each connected to a different ISP. Between my two local routers is ibgp. I went ahead and enabled "synchronization" because before I enabled that each router was advertising the adjacent routers /24 to the local ebgp peer via th...
Working on a new datacenter deployment with 2 eBGP routers, each connected to a separate ISP where both will give us full routes
My plan for iBGP and the lateral connections between our routers:
1x10Gb layer 2 connection
2 x 2Gbps LACP port channel...
I think I figured this out. The disconnect is thinking the IP's must be defined on the interface before they can be used in NAT/PAT or VPN endpoints. I was able to pencil in additional public IP's in the /23 in the NAT/PAT rules and I expect to be ab...
I think I may have figured this out. Here is what I did On the Translation tab, I set the Translated Packet to "Address" but then just left it blank. Then went to the PAT Pool tab and set PAT to Address and selected an Object with a range of sequent...
I raised the issue with the ISP and yes, they were somehow overriding my advertisements and just advertising the /23. (However, I didn't even see the /23 in the internet table, but maybe it created a mismatch and then just nothing was advertised) One...
There are 2 ISP's providing the northern link on each router. Per the picture, one ISP is A.A.A.A and the second ISP is C.C.C.C. So I expect that both ISP's are going to give an external public IP to use to terminate each of their links on my routers...