cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
252
Views
0
Helpful
1
Replies

Per App VPN Not Working on IPv6 Wireless Provider Network

ttcroziercisco
Level 1
Level 1

Thanks for taking time to read this.  It is an interesting scenario,

I have set up a per app vpn for a time entry mobile application for iPhones.  The setup works great  when using Spring, ATT, and Verizon as a wireless provider.   However, it wont work for users on T-Mobile, it can connect to vpn, but no traffic is passed.  At first, I thought it was due to T-Mobile being a IPv6 network, but I was wrong.  After additional testing, I found that the vpn works fine on T-Mobile (IPv6) network (when in full vpn mode), and that it just doesnt work when using it in a per app setup.

Has anyone have any insight or experience with this issue?

Thanks

Update:  For testing, I setup 2 vpn profiles, one a traditional layer 3 ssl  vpn and the 2nd, an ssl per app vpn.  Both profiles are set to use the same tunnel policy (Split included with 2 separate 10.x.x.x/24 networks).   I noticed that the phone's route table never gets updated when in per app mode.

1 Reply 1

Philip D'Ath
VIP Alumni
VIP Alumni

It is hard to see how this could be anything else other than a bug.

Is there a newer AnyConnect client you could use for your devices?

Failing that, you'll need a Cisco Support Contract, such as a SmartNet, and open a case with Cisco TAC so you can get a bug opened up.