Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello experts,I have customers who require to use VM in their laptop. These users also require to VPN to Corporate network to do their job. However when they do remote VPN to corporate Network (ASA VPN concentrator) from their VM host machine, they ...
Hello experts,When using cisco VPN client and ipsec IKEV1, there was always and option to choose IPSEC over TCP which also made it possible to use NAT-T over TCP port 4500. However in new AnyConnect client there is no way to force the IPSEC over NAT-...
Hello experts,I have upgraded my ASA5540 form 8.2(2) to 8.4(2) and I have run into this logging issue.previously I was logging the message ID: 713906 and could get this information:group name, public address, assigned local address, username which id...
Hello experts:A customer of mine has a requirement to do url redirection via PIX. This requirement is very strict as the customer does not want to spend an additional penny on this. Here is the example of what he wants to do:Any http or https request...
Hello Experts,I have two scenarios which I would like to hear your comments about:This is in regards to configuration of IKEV1 and IKEV2 in two different profiles and comparing their security level.When configuring IKEV1, I use shared secret keys. A...
Joey,I CAN see 746012, but only if I have enabled debug logging " logging buffered debugging"I did the commands you have mentioned:logging message 746012 informationallogging message 734003 informationalby doing this I can not see these messages, bu...
Yes, I see the debug level logs but nothing for 722022.tst-vpn(config)# sh logg mess 722022syslog 722022: default-level informational, current-level debugging (enabled)Now I found the message ID 746012 and 734003 could be an acceptable solution, but...
Hi Marcin,Thank you very much for the useful clarification. I have configured an ASA with IPSEC IKEV2 remote access VPN where only server authentication through "Identity certificate" is required. The steps I have done.- created a CSR on the ASA- se...
Hi Rohan,Thank you for the solution and the link you have posted. The way you have described it may be possible to restrict access based on username, but for this special scenario, it is administratively prohibitive to use username to restrict acces...
Hi Petenugent,I know for fact that I want WWAN. I am not looking for another solution. My question was if someone has used it before? and if someone knows a provider which can recommend.Of course I want WWAN because other solutions can not do it. The...