cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
4829
Views
0
Helpful
2
Replies

AnyConnect VPN - Force Transport Protocol DTLS

MrPrince1979
Level 1
Level 1

Hey, I'm using AnyConnect (2.4.1012) to connect to my 5505 (8.3.1). I want to enable DTLS as the transport protocol, I've used the following commands:

group-policy AnyConnect-GrpPolicy attributes
webvpn
  svc dtls enable

Whenever I connect up my Anyconnect client it shows TLS as the transport protocol. Using the CLI how can I investigate what's going on? My Cipher is RSA_AES_256_SHA1 if that makes any difference.

Thanks.

1 Accepted Solution

Accepted Solutions

Jennifer Halim
Cisco Employee
Cisco Employee

Can you please share the output of "show vpn-sessiondb detail svc filter name " once you are connected?

Also, if UDP/443 is being blocked from the path, it will fall back to use TLS (TCP/443).

View solution in original post

2 Replies 2

Jennifer Halim
Cisco Employee
Cisco Employee

Can you please share the output of "show vpn-sessiondb detail svc filter name " once you are connected?

Also, if UDP/443 is being blocked from the path, it will fall back to use TLS (TCP/443).

Yep, I hadn't opened up UDP 443 on my perimeter router. Thanks for the assist.