cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
561
Views
0
Helpful
2
Replies

Site to Site VPN working without Crypto Map (ASA 8.2(1))

scottchang
Level 1
Level 1

Hi All,

Found a strange situation on our ASA5540 firewall :

We have couple Site to Site VPNs and also enable cleint VPN on the ASA, all are working fine. But found a Site to Site VPN is up and running without crypto map configuration. Is it possible ?

I tried to clear isa sa and clear ipsec sa then the VPN came up again. Also tested it's pingable to remote site thru the VPN.

I did see there is tunnel-group config for the VPN but didn't see any crypto map and ACL.

How does Firewall know which traffic need be encrypted to this VPN tunnel without crypto map?

Is it the bug ?

Thanks in advance,

1 Accepted Solution

Accepted Solutions

It might be an easy vpn setup.

Could you post a running config output remove any sensitive info.  This could help us answer your question more exactly.

--
Please remember to select a correct answer and rate helpful posts

View solution in original post

2 Replies 2

It might be an easy vpn setup.

Could you post a running config output remove any sensitive info.  This could help us answer your question more exactly.

--
Please remember to select a correct answer and rate helpful posts

It's EzVPN. I checked online and found the setting. Thanks Marius !