01-28-2013 11:55 AM - edited 07-03-2021 11:26 PM
I'm curious, with IPSEC site-to-site VPN, does the the CAPWAP tunnel that forms for a lightweight AP as it connects to the WLC qualify as interesting traffic to keep the VPN tunnel open?
01-28-2013 11:58 AM
it would if you defined ports 5246/5247 as intersting traffic.
HTH,
Steve
------------------------------------------------------------------------------------------------
Please remember to rate useful posts, and mark questions as answered
01-28-2013 12:03 PM
How would you define ports on the acl instead of the IP's for Site to Site?
01-28-2013 12:03 PM
This is Cisco router to cisco router not router to ASA.
01-28-2013 12:07 PM
ip access-list ext < acl id > udp any any range 5246 5247.....
all depends on the acl you are using.
HTH,
Steve
------------------------------------------------------------------------------------------------
Please remember to rate useful posts, and mark questions as answered
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide