VPN

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Cisco CyberSecurity

Labels

Forum Posts

Hi,I recently configured AnyConnect on ASA 5510, 5512 and 5505 with split-tunneling and it's working great. You can refer to the configuration below:webvpnenable outsideno anyconnect-essentialsanyconnect image disk0:/anyconnect-win-3.1.14018-k9.pkg 1...

Hello!   So I got tasked with a tricky assignment today...   We have an ASA with inside, outside and wifi interfaces (the other ones are not important). The outside has Public1 IP and the clients from the wifi interface are NATed to Public2 IP addres...

Hello Everyone,    I am having some trouble getting port forwarding to work. ASA 5505 CLI Version 8.2(5). I've tried a few different configs, but I can't seem to get it to work. I am trying to configured RDP access for one specific public IP only. Us...

JB-TX by Level 1
  • 2811 Views
  • 5 replies
  • 0 Helpful votes

I have been testing EasyVPN combined with IPSec VPN and there is an issue regarding the communication on VPN Tunnels which is summarized as follow:  * attach the configuration from Office Router and Diagram The communication through IPSec Tunnel is f...

EasyVPN.jpg

I am going to configure site to site vpn in my lab .. i am using two ASA what are the parameters to match betwween the peers phase 1 configuration .....crypto ikev1 policy 1 authentication pre-share encryption aes hash md5 group 2 lifetime 86400wheth...

I'm having some problems getting a basic IKEV2  Hub/Spoke lab working with the WAN interfaces in a FVRFThe tunnel comes up but the quickly comes down. On the spoke there is an invalid_SPI message %CRYPTO-4-RECVD_PKT_INV_SPI: decaps: rec'd IPSEC packe...

Wes Smith by Level 1
  • 3638 Views
  • 3 replies
  • 0 Helpful votes

I have two brand new Cisco 4500-X switch. I need to configure VSS on this. I have done that part but have some question for AAA authentication configuration.  I have Radius server in my network for authentication.  I need to configure a switch in suc...

we have 2 tunnels setup between the customer and us. we are trying to have a GRE-IPsec tunnel between us (Primary & Secondary) we have the tunnels up and active when I do a "sh crypto session", "sh crypto isakmp sa"shows no errors. In the show crypto...

Hi,   We have an ASA5515X at central and a new RV340W at a new satellite office.  Various internal networks hang off the ASA and we would like these all accessible through site-to-site VPN from the RV340W.   Due to known bug CSCve98765, the RV340W wo...

I have setup a site to site vpn using an ASA behind a VDSL router at the remote end. The head end is a ASA. Ive got many remote sites connected this way with ADSL routers. Using the same config on the VDSL site i can get the tunnel up so phase 1 is f...

mickyq by Level 1
  • 735 Views
  • 1 replies
  • 0 Helpful votes

Hi all, thanks in advanced for any support! I've configured my RV130W to have a IPSec VPN with settings: NAT Traversal: disabled Phase 1  ExchangeMode: Main  Encyption: AES-256  Authentication: SHA-1  DH Group: Group 2  IKE SA Life TIme: 3600 Phase 2...

veryaner by Level 1
  • 674 Views
  • 0 replies
  • 0 Helpful votes

what is Hash-based Message Authentication Code (HMAC)? how does it works? what is the different between the HMAC and a hash algorithm?    during the IKE phase 2 tunnel negotiation (I'm talnking about the IPsec protocol) both the vpn peers must agree ...