[117969] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

RE:

daemon@ATHENA.MIT.EDU (John Hodges)
Wed Oct 7 13:26:44 2009

From: John Hodges <jhodges@simplexity.com>
To: "nanog@nanog.org" <nanog@nanog.org>
Date: Wed, 7 Oct 2009 13:26:06 -0400
In-Reply-To: <4ACCC9AD.2020801@i6ix.com>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

I was in ASA class just last week and asked about this exact issue.

I was told that at this time you cannot do the IPSec VPN in Multiple contex=
t mode (due to the ASA not being able to keep track of the SA).  This is a =
software issue that Cisco is working on and has in test at this time.  No t=
imeframe for release though.

-John

-----Original Message-----
From: Jason Bertoch [mailto:jason@i6ix.com]=20
Sent: Wednesday, October 07, 2009 1:03 PM
To: nanog@nanog.org
Subject: Re: <Help - Unable to builld a IP-SEC VPN on a Cisco ASA 5520>

Michael Ruiz wrote:
> Group,
>
> =20
>
>                 I am stuck like chuck.  We are unable to activate a VPN
> in one of the virtual firewall context.  Under the crypto commands, none
> of the IP-sec are available.  Any help on this would be appreciated.
> Version we running is 8.0(4)
>
>  =20
Isn't VPN only available in single-context mode?



home help back first fref pref prev next nref lref last post