Has anyone heard of any issues with using BGP and IPSEC VPN's?
Here is the issue: My set up is 2 ISP's 2 Routers EBGP- IBGP between the routers. HSRP Between the routers.
VPN is set up with a router ACLS are all in place through the PIX and Switches.
Here is the issue, when I fail from ISP...
Hello, all Long time since I have posted.
I am having a issue with Net Flow on my Cisco 2800- Seems that every thing is configured correctly yet I can not view any stats. I am including the interface and global config - if you need more please ask as this was the min my security people wanted...
Hello all,
I am having what would seem to be a unique issue. I have a SAN attached Server getting delayed write errors- I have exhausted just about all options I can think of and even vendors are scratching their heads. We have updated HBA's we have updated path software, we have looked at the...
Hello all, Currently I have a 1841 with a 4 port switch module. Programmed are 2 vlans, one for data one for voice. I am getting some dropped phone calls not anything too serious but would like to know what the syntax is to set up some QOS on the voice vlan on the switch. Any help is much...
thats where I went to begin with, was looking for something in conjunction to or with besides formal training like Global Knowledge.
Thanks for all the replies.
I have 3 DC's in my domain. I would like to know if there is an automated process to move FSMO roles when the operation master fails. I am seeing some applications have issues when I lose the operation master DC, the only thing I can find is a manual process to move fsmo roles to one of the...
Here is the config;
interface ethernet0 auto
interface ethernet1 auto
interface ethernet2 auto
nameif ethernet0 outside security0
nameif ethernet1 inside security100
nameif ethernet2 dmz security10
clock timezone EST -5
clock summer-time EDT recurring
fixup protocol dns maximum-length 512
fixup...
That looks like it would work great for pix to pix. I as usual was not too clear on my issue. I am the client connecting to the pix, the pix is the VPN. Once connected I can get to internal resources with out any issues. I can get to my DNS servers, and other servers. I can not however get to...
I am having a slight issue with accessing my dmz servers while using the VPN. The pix is the VPN, dhcp and so on. When I get connected everything outside the DMZ is accessable no issues what so ever. When I try to ping or SSH to a device in the DMZ I get nothing, ping times out as well as ssh...
I want to create a virtually seemless failover with my internet connections. I have seperate ISP's for redundancy and I need to get to 95+% up time with this solution. Is BGP the only way. Whether partial or full routes is this the only Interenet seemless solution?
http://www.wdpi.com/contact_us_rrf.htm
Not sure if this is allowed here but this site offers a free poster that lists most the routers and wic- configurations for those routers, comes in handy
Thanks for the info so far here is my config for the vpn
sysopt connection permit-ipsec
crypto ipsec transform-set strong esp-3des esp-md5-hmac
crypto map vpn 10 ipsec-isakmp
crypto map vpn 10 match address
crypto map vpn 10 set peer x.x.x.x
crypto map vpn 10 set transform-set strong
crypto...
I want to have my VPN's inside my pix in an always up state, barring a isp issue, is there a vpn command to keep the vpn's up? I seem to be seeing them go down quite a bit and was under the impression there was a command that could force them up and open.? any help is greatly appriciated.
What I really need to know is what method is most used for ISP redundancy. I am aware of all the in's and out's and could possibly get a tech that is more familiar with the area, Just would like to get the basic information here.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.