Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi, simple scenario. PC want to get to server. ASA check by IP SLA availability route to Server A and to Server B. Is there any option how to translate NAT IP on ASA to local IP of server according availability? (Server A a Server B are on different...
Hi, we have problem between Cisco ASA and Cisco router: tunnel status
<status on asa>
IKE Peer: xx.xx.xx.78 Type : user Role : initiator Rekey : no State : MM_WAIT_MSG2
<status on router>
#show crypto isakmp sa
IPv4 Crypto ISAKMP SA
dst ...
There is no interface with this IP, but the communication (with DA 213.71.142.140) come from interface outside. ASA special, that you can translate IP without having it in some interface
Hi Georg, thanks for your reply. It should listen on public 213.71.143.136:9989 and translate it to private IP according to actually available 1 of 2 servers. SLA trak the end-address. Maybe EEM could help. hostname ciscoasanames!!interface Ether...
for 2 mins it was on MSG3 but then goes back to MSG2 # sh isakmp sa detail7 IKE Peer: x.x.x.78Type : user Role : initiatorRekey : no State : MM_WAIT_MSG2Encrypt : aes-256 Hash : SHAAuth : preshared Lifetime: 0 in debug still bug of Aug 22 11:41:28 [...