GroupStudy.com GroupStudy.com - A virtual community of network engineers
 Home  BookStore  StudyNotes  Links  Archives  StudyRooms  HelpWanted  Discounts  Login
RE: VPN - IPSec over TCP on PIX vs ASA - both ver 8.03 - [7:129666] posted 02/05/2008
[Chronological Index] [Thread Index] [Top] [Date Prev][Date Next] [Thread Prev][Thread Next]


Bah!  Real men use debugs!  ;-)

Rik 

-----Original Message-----
From: nobody@xxxxxxxxxxxxxx [mailto:nobody@xxxxxxxxxxxxxx] On Behalf Of
Radioactive Frog
Sent: Tuesday, February 05, 2008 12:48 AM
To: Andrew Larkins
Cc: Andrew Shin; mdestienne@xxxxxxxxx; ccielab@xxxxxxxxxxxxxx;
cisco@xxxxxxxxxxxxxx; security@xxxxxxxxxxxxxx
Subject: Re: VPN - IPSec over TCP on PIX vs ASA - both ver 8.03 - strange
problem only working on PIX and not ASA - UDP works on both!

Andrew,
Config looks same, no issue with it.
The only advise I can give you is to mirror a switch port which is facing to
the router or WAN port and capture the traffic. That will give you some
clue...
Also have you considered upgrading /downgrading the IOS? I don't think it is
a IOS bug as this important function must have been tested in the Cisco lab
before they released the software.

Also have you tried using Object based policy?

Cheers
frog

_______________________________________________________________________
Subscription information may be found at: 
http://www.groupstudy.com/list/CCIELab.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=129666&t=129666
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html