Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
HI ,I have an ASA5510 version 8.0.4.I have configured 4 tunnels with 4 different customers with same ipsec configuration. I have activated NAT-T because i have a Cisco 1801 (between ASA and Internet) which is doing NAT .I translate IP outside address...
Hi, I am using Cisco Anyconnect 2.3.0185 and Asa 8.0(4).IP address are assigned statically by ACS.I specify IETF Rdaius Attibutes 9 (Framed-IP-Netmask) to return the correct mask (255.255.255.255 like a ppp session).But the IP Gateway returned to the...
Hello,i am using Anyconnect as client for remote Access VPN .I have different tunnel-groups configured on ASA which are used depending on the certificate used by client.So how can i select a certificate among severals on my PC with anyconnect ?Thanks...
I use Cisco Anyconnect "anyconnect-win-2.3.0185-k9" and ASA 8.0.4. I just want to use CSD for prelogin and check a registry key of the PC desktop .It works fine but i have always in ASA log this message :"Certificate validation failed. No suitable tr...
Hi Jennifer,Yes , there wre no packets from outside because of a filter on ESP ! Soafter correction it's working fine now and i find solution easier to implement on Cisco IOS than on ASA ...Thanks for your help. Rgds.David
HI,Could you pelase confirm that it still the case with new version ?Because our customer has a Cisco ASA with version 8.3 and he has no problem of limitation with Nat-T featureHe has about 100 VPN connectionsSo i did the configuration on the Cisco r...
HI Jennifer,I saw this also on Cisco site (http://www.cisco.com/en/US/docs/security/asa/asa72/asdm52/user/guide/vpn_ike.html) :The security appliance implementation of NAT-T supports IPsec peers behind a single NAT/PAT device as follows:•One LAN-to-L...
Hi,The VPN concentrator is the One which is not working . It will be difficult to have the configuration as it's not mine.Summary :2 which works : ASA 5520 with 8.0.5 Netasq firewall/gateway2 which don't work : ASA 55xx with 8.3 VPN 3060 4.7.2.BThe 2...
HI,Thanks for your response JenniferI asked to the first customer what kind of IPsec concentratror he has :Cisco VPN 3060 version 4.7.2.Bhe told that Nat-T is activated and supported on its side, but that he didn't see any packets arriving on port U...