Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
On an FTD can I set up one VTI and use it on 2 tunnels? I will be running a dual hub and spoke configuration and i am looking to use a /24 for the subnet and have the hubs borrow the IP from the loopback which will be set up in the same subnet. If I ...
I have been trying to find documentation for configuring through FMC a site to site vpn tunnel when one network matches a network on the far side. I have a network 192.168.200.0/24 that is also routed on the second network. I am trying to NAT the 192...
I have a peer that I send backups to. They have two sites that they use for the backups. One is a primary and one is a secondary disaster site. The tunnel is always initiated from my side. They have a FQDN that is supposed to be used for the peer add...
I have an FTD that is management by FMC. Currently management goes across a VPN tunnel that goes in the public interface. The device is moving and I need to push the change for the public interface and gateway change before moving to it is going. I a...
I am trying to figure out what is wrong with my VPN tunnel and cannot quite figure it out. I can see this error but I don't knwo what it means:
IKE MM Responder FSM error history (struct &0x74547aa0) <state>, <event>: MM_DONE, EV_ERROR-->MM_WAIT_MS...
I am running 7.3.1.1 on the two hubs as those are 2110. I am running 7.0.5 on all of the spokes as those are 55xx series running ftd as 7.0 is the last supported firmware for the 55xx series. I was going to use dVTI on the hubs. Where it is a dual hu...
After reading through this I am finding that this is only if you have the overlapping networks talking to each other. I don't see a way to have multiple NAT statements for a tunnel. I have about 10 networks on each side that do not overlap and will h...