01-28-2013 11:55 AM - edited 07-03-2021 11:26 PM
I'm curious, with IPSEC site-to-site VPN, does the the CAPWAP tunnel that forms for a lightweight AP as it connects to the WLC qualify as interesting traffic to keep the VPN tunnel open?
01-28-2013 11:58 AM
it would if you defined ports 5246/5247 as intersting traffic.
HTH,
Steve
------------------------------------------------------------------------------------------------
Please remember to rate useful posts, and mark questions as answered
01-28-2013 12:03 PM
How would you define ports on the acl instead of the IP's for Site to Site?
01-28-2013 12:03 PM
This is Cisco router to cisco router not router to ASA.
01-28-2013 12:07 PM
ip access-list ext < acl id > udp any any range 5246 5247.....
all depends on the acl you are using.
HTH,
Steve
------------------------------------------------------------------------------------------------
Please remember to rate useful posts, and mark questions as answered
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: