10-10-2011 02:44 AM
Dear Netpro Gurus,
Does an upstream router with IOS 15 have a role in not allowing s2s vpn
traffic from an ASA 5520 to pass through. If that is the case then how to fix it.
Regards
Faiz
Solved! Go to Solution.
10-10-2011 03:43 AM
Nothing needs to be done for pass through VPN traffic as far as licensing is concern on IOS 15.0.
If you are actually terminating the IPSec VPN tunnel on the IOS 15.0 router, then yes, you would need to have the K9 Security license, but for pass through traffic, there is no extra license required.
10-10-2011 03:28 AM
It really depends on what configuration you have on the IOS 15 router.
Any CBAC, or ZBFW, or NAT, or access-list that might be blocking the traffic S2S VPN traffic?
You might want to check the following protocols:
- UDP/500
- ESP procotocl
- UDP/4500
10-10-2011 03:33 AM
There is no access list related to any services. what I meant was whether the new 15.0 IOS itself is not allowing the
VPN traffic. I was having a thought that maybe it needs a licensing Key to unlock the VPN cabability and allow VPN traffic to pass through.
Regards
Faiz
10-10-2011 03:43 AM
Nothing needs to be done for pass through VPN traffic as far as licensing is concern on IOS 15.0.
If you are actually terminating the IPSec VPN tunnel on the IOS 15.0 router, then yes, you would need to have the K9 Security license, but for pass through traffic, there is no extra license required.
10-10-2011 03:50 AM
Thank you very much, appreciated your time and answer.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide