Cisco VPN :: ASA 5510 - Stopped Accepting Connections?

Jun 7, 2012

My ASA 5510 has stopped accepting connections today.  I cannot connect with ASDM either.  ASDM hangs at "Contacting the device.  Please wait" and does not return an error or time out.  I can telnet into the device but my CLI knowledge is elementary at best.  I'm trying to determine how to view or enable the correct logging and view via CLI.  I have looked at the client log from one of the users that cannot get in and have attached it.  It looks like Phase 1 is not completing but I'm not sure how to view what the ASA is logging.  I have run debug cry isa and debug cry ipsec but it just returns to the prompt and I'm not sure what I should expect to see or what command to run to view the results.

View 3 Replies


ADVERTISEMENT

Linksys Router Not Accepting New Connections

Oct 20, 2011

It's a linksys wireless router attached to their service provider modem and it can no longer recieve new connections. The pc's connected to it before still run through ti fine but any new laptops using the proper authentication and password are unable to make a connection.First thing I am going to try is a factory reset(they mentioned resetting the router but they may have just rebooted it)

View 6 Replies View Related

Cisco :: Port 6050 Accepting Connections On 2801?

Dec 14, 2012

I have a 2801 with a very simple config that's accepting telnet connections on port 6050 from everywhere:

View 1 Replies View Related

Cisco Firewall :: ASA 5505 Stops Accepting Connections

Nov 21, 2012

A client has an ASA 5505 with a base license.  The version information and configuration is attached.  In 8 hours, sometimes less and infrequently more, it becomes inaccessible.  All connections are dropped and the only way to access the device is through a console connection.  The WAN interface (VLAN 3) is connected to Verizon FIOS.  The interface was set to 100 MBps and full duplex, but I just changed it to auto on both the speed and duplex to see what would happen.  The LAN interface (VLAN 1) is also set to 100 MBps and full duplex  It has not been changed.
 
The last time it happened logging was running, but nothing in the log indicated a problem.  In fact, the last log entry was a couple of hours before the lockup (there's little or no traffic on the ASA while the problem is being diagnosed).

View 3 Replies View Related

Linksys Wireless Router :: WRT610N Not Accepting Web Connections?

Nov 4, 2012

Firmware Version: 2.00.01 build 15  Sep. 13, 2010
Firmware Verification:  dcf86b5724049cb145f571a4bc21a17d.

I was able to connect using Gnome Epiphay Web Browser v 3.4.1 and found no problems on the WRT610N router.So-o-o Cisco, what do you recommend I do, seeing as how there is no later firmware to apply and nothing to configure that I can see.

View 3 Replies View Related

Cisco Wireless :: AP541N Device Stops Accepting Client Connections

Feb 8, 2010

We have an AP541N that has been deployed to replace a Cisco 1200 AP (B/G radio).  The 1200 functioned perfectly in our environment.  The new AP541N on the other hand seems to work fine right after a reboot but immediately starts to degrade service.  Over a short period of time, the devices bandwidth degrades to the point were the wireless network is not usable.  This happens with just one device connected.  Eventually, the device stops accepting client connections. We are unable to get any relevant logging out of the device to diagnose the problem.

View 84 Replies View Related

LAN Server Stopped Receiving Connections

Mar 25, 2011

Yesterday none of the clients could access the server. I could VNC remotely to see that the server was running. On site I observed that the server can ping and VNC all the clients but while the clients can VNC to the server they cannot ping it, nor can they connect to it. I checked the router/firewall settings and nothing appears to have changed in the last 24 hours.

View 7 Replies View Related

Linksys Wireless Router :: WRT54GS Wired Connections Stopped Working

Feb 28, 2013

The router stopped working for wired connections.  I can still go online using my laptop via wifi, but when I connect a network cable to the laptop and turn off wi fi, connection does not work.  Can't go online with a desktop with a wired connection to router.Everything else works via wi fi: iPad, android phone, tv with wifi.

View 1 Replies View Related

Linksys Wireless Router :: E4200 Wired Connections Stopped Working?

Jul 31, 2012

My router was working just fine forever, the only computer that will connect VIA wire is my desktop, everything else for it to connect to my network it has to go wireless. Things like my blu ray player just will not connect. I am not an expert at all, but why is only the wireless working? I can use the Cisco connect and adjust the settings if need be.

View 5 Replies View Related

Cisco Firewall :: ASA 5510 / Management Interface Stopped Working After Upgrade?

Jun 24, 2012

After I have upgraded our ASA 5510 to 8.4.2 I have problem with the management interface.Our former firmware 8.2.3 had no problem using the management interface as a DMZ zone, but after we upgraded to 8.4.2 we can't make it work.The interface and the protocol is up, when I type: show interface.But when I ping the interface from a computer connectet to the interface, nothing happens.
Even the logging shows nothing.

View 7 Replies View Related

Cisco WAN :: Have 2 ISP Connections On ASA 5510?

Sep 18, 2011

1 isp connection which splits into two. One plugs into 5510 with ouside ip and the other plugs into the other 5510 with outside ip address.
 
see diagram below:
 
Router routes are set as:
 
ip route 0.0.0.0 0.0.0.0 10.x.x.1 
##
ip route 10.x.x.0 255.255.255.0 10.x.x.2
   
We will be introducing another isp into our network. We want to remove our current isp and switch. But we dont want to do the cut overnight. We will migrate into our new isp. so for a while we will have both isp connections.

What i am thinking of doing is taking one of the ports on 10.x.x.1 and configuring it for our replacement isp network and the same for 10.x.x.2. Will that work?

Can i have ASA 5510 configured for 2 seperate ISP connections? What kind of route will i set on my router?

View 1 Replies View Related

Cisco VPN :: ASA 5510 - Dual WAN Connections

Nov 29, 2011

Context:1- My company has one ASA 5510 configured with Site-to-site VPN, Ip sec Cisco VPN and Any Connect VPN.2- We use ASA to connect to the single ISP (ISP 1) for internet access. ASA does all the Na Ting for internal users to go out.3- A second link is coming in and we will be using ISP 2 to load balance traffic to internet (i.e. business traffic will go via ISP1 and “other” traffic will go via ISP2).4- A router will be deployed in front of the ASA to terminate internet links.5- No BGP should be used to implement policy (traffic X goes via ISP1, traffic Y goes via ISP2). Questions:How do I get this done, particularly, how do I tell the router, for traffic X use ISP1 and for traffic Y use ISP2? PBR is my friend?Since I will be having 2 public Ip Addresses from the 2 ISPs, how do I NAT internal users to the 2 public Ip addresses ?. Finally, which device should be doing the Na Ting? The ASA just like now or move Na Ting to the Router?

View 9 Replies View Related

Cisco Firewall :: ASA 5510 With 2 Internet Connections

Apr 5, 2013

Is it possible to have a Cisco ASA5510 with two internet connections performing as follows.

Internet A---------All traffic except LAN to LAN vpn
Internet B---------LAN to LAN vpn

I cant find anything definitive on google to say it will or wont, i know it cant do policy based routing.

View 3 Replies View Related

Cisco VPN :: ASA 5510 - Client Connections Getting Dropped

Mar 30, 2011

I have some remote locations that connect to my ASA 5510 cluster (Aktive/Passive) using the Cisco VPN Client, from which the connection gets disconnected at random intervals (could be 5 minutes, but sometimes after 15 minutes). However, some other remote locations do not have this problem. All locations have the same VPN client configuration (distrubited by pcf file).

I already disabled isakmp keepalive on the ASA but this did not work. If I read it correctly, the Cisco vpn client logging shows that the ASA initiates the ending of the connection.
 
Code...

View 2 Replies View Related

Cisco Firewall :: ASA 5510 Two Internet Connections

Aug 1, 2011

We are in the process of getting two new connections pulled in that I would like to utilize in the following configuration.
  
DS3 - 45/45 I would like to use this circuit for all of our servers to NAT out of as well as our VPN tunnel to our remote site.  It will be much more reliable than our cable line.
  
Cable Internet - 50/10 I would like to use this for all internet traffic that users generate.  I would like to be able to fail over to the DS3 if this line goes down.
  
To get all traffic go out the cable line would take a dynamic NAT rule and a default route.  How would I automate a failover to the DS3 with a backup route and dynamic NAT rule? 
 
I understand that if the DS3 goes down it will take manual intervention to bring the tunnel back up and servers with static NAT will need reconfiguration.

View 1 Replies View Related

Cisco Firewall :: Teardown TCP Connections With Kaseya Server (ASA 5510)

Sep 12, 2011

normaly the agents has a persistent connection with the kaseya server (monitoring server),The connection  re-established afther the next check-in of the agent, instead of a persistent connection. Now we need to wait to the next check-in before we can connect to the agent. This is a big performance issue, the check-in time of the agents are 3 minutes.I see a lot of the following messages in de syslog:
 
6Sep 12 201120:27:48302013customer site527985721Built inbound TCP connection 5418112 for outside:(customer site)/52798 (customer site/52798) to inside:kaseya server/5721 (outsideIP/5721) 
6Sep 12 201120:29:09302014customer site527985721Teardown TCP connection 5418112 for outside:(customer site)/52798 to inside:kaseya server/5721 duration 0:01:21 bytes 45 TCP FINs 
  
I create a normal static nat rule from the kaseya server to a public ip address, and i define the protocols in de secutiry policy.ICMP has been allowed.cisco asa details:System image file is "disk0:/asa824-k8.bin" This platform has an ASA 5510 Security Plus license.It's look like a connection time-out between the agents and our cisco asa.

View 8 Replies View Related

Cisco Firewall :: ASA 5510 / Dropped Packets In VPN AnyConnect Connections?

Dec 5, 2012

Our Cisco ASA 5510 running 8.4(4)1 just started dropping packets and our AnyConnect clients are seeing horrible performance.  The system is extremely slow compared to just a couple days ago.Nothing has changed on the system.  I can post the configs if needed.
 
firewall# sho int
Interface Ethernet0/0 "outside", is up, line protocol is up
  Hardware is i82546GB rev03, BW 1000 Mbps, DLY 10 usec
    Full-Duplex(Full-duplex), 1000 Mbps(1000 Mbps)
    Input flow control is unsupported, output flow control is off
    Description: == WAN Interface ==

[code]....
 
I have done a "sho vpn-sessiondb detail svc" and I can see the dropped packets of the individual users, but cannot see why the packets are still dropping.how I can correct this and restore speeds?

View 1 Replies View Related

Cisco Security :: ASA 5510 - Internet Connections Dedicated VPN Traffic

May 22, 2011

We have an ASA5510 and we're currently using 1 internet connection to handle our site-to-site VPN connection and our internet traffic. We have a second internet connection on hand. What we would like to do it use BOTH internet connections: (1) will be dedicated to our VPN connection, (1) will be handling all our internet traffic. How can we get this setup? We're running Software Version 8.4(1)

View 1 Replies View Related

Cisco Firewall :: ASA 5510 - Dual Internet Connections / Routing DMZ Traffic

May 29, 2012

I am having an issue when implementing an additional internet connection on our ASA 5510. The new connection is "TWCOutside".  I was my understanding that static NAT would force our externally hosted servers (Email, PPTP VPN, and FTP) to continue to utilize the "ATTOutside" connection.  Our remote site-to-site VPN traffic has two static routes configured to force it to continue to use the ATTOutside connection.When I switch the metric on the 0.0.0.0 0.0.0.0 98.103.148.145 route to 1, and change out default dynamic xlate to use "TWCOutside", it "mostly" works as expected.  Email, the PPTP VPN server, and our remote site-to-site VPN server continue to use the ATTOutside connection as designed.  Our end users begin using the new connection for thier internet browsing.
 
However, our FTP server, in the DMZ, completley loses outside access.  It cannot ping to 8.8.8.8, or resolve DNS queries.  The is a static NAT statement for this server, as it is using one of our dedicated public IP addresses.  I need it to continue to do so for the next few weeks.Effectivley, we just want to give our end users internet browsing on the new TWC link, but leave everything else on the old ATT link for the time being.  The only problem I am having is the DMZ connection.  I am currently "rolled back", so no one is using the new connection until I figure this out.  I can easily switch the metric and dynamic PAT back to using the TWC connection, but I need to have some things to try with the DMZ before doing so. [code]

View 2 Replies View Related

Cisco Firewall :: 5510 - Connections Routing Between Two Internal ASAs Fail

May 19, 2012

We have a site with two inbound circuits, one for internet and one for our MPLS.  Each circuit is being terminated by a 2921 Router and matching ASA 5510 Firewall.  For the internal network, the Internet ASA's inside interface (172.16.0.1) is the default gateway for all hosts.  OSPF is the routing protocol between all the routers and ASA's and routing is working.  In fact, ICMP is working as well.  From an inside host (172.16.0.81), we can ping anything on the MPLS network.  But when I try to use telnet (for example), the connection fails.  If I add a route to 10.10.10.0 to the host, or re-configure the host to point to the MPLS ASA (172.16.0.254) as it's default gateway, connections will establish.
  
Both ASAs are running 8.4(3), and have the following commands:
 
same-security-traffic permit intra-interface
interface Ethernet0/0
nameif outside

[Code]....

And from the MPLS nodes, I can see a tcp request is made. 

View 6 Replies View Related

Wep Key Is Only Accepting 9 Digits?

Jan 21, 2012

i was having probs with the daughters dell laptop wireless setup, was intermittent, downloaded latest drivers, went to set up the connection, im running 128 bit wep and the damn software will only take the first 9 digits? i have 8 other wireless devices running of this so i dont want to have to change settings on all of them?

View 5 Replies View Related

Cisco :: WCS V.7.0.230.0 To NCS 1.1 Upgrade Not Accepting License?

Nov 15, 2012

We are currently preforming the upgrade from WCS v.7.0.230.0 no NCS 1.1. When we select the Lic file we get an error message "Unable to add any license without an NCS (L-NCS-1.0-K9) license." The file name is WCSUPG20121115142018448.lic.

View 2 Replies View Related

Cisco WAN :: 2911 Not Accepting HTTPS Access

Jul 15, 2012

I have a 2911 which works perfectly except I cannot access it via HTTPS. HTTP and SSH both work. I've regenerated the RSA-key several times but to no avail.The box has a host- and domain-name configured.

View 8 Replies View Related

Cisco Switches :: Switch SF 200 Not Accepting Static IP

Feb 25, 2013

I have fiber optics no router One static IP address, when connect SF 200 the system LED flashes and there is conductivity.I checked ther is no setting for static ip,Gateway,DNS, so is this unit only for Dynamic address

View 3 Replies View Related

Cisco WAN :: WLC2504 Not Accepting DHCP Pools From 3750?

Dec 4, 2011

I got a set of dhcp pool in one 3750 attached to diferent Vlans in the network, the wired network works fine, you can get from any switch port across the LAN a diferente VLANs IP. In my wlc2504 I got 5 WLANs with the DHCP server pointed to the VLAN in the 3750, but I just got one set of ip when i tried to connect to diferent WLAN, without connectivity, I can see all the Ap's, and ping the VLANs in the 3750,

View 4 Replies View Related

Cisco Wireless :: WAP4410N Stops Accepting Clients

Sep 25, 2011

I have two WAP4410N. One of he accesspoints is connected to our wired LAN, called by now AP1. The other accesspoint is connected to the first accesspoint by WDS (Client mode) called now by AP2. I have upgraded both accesspoints to firmware 2.0.4.2. Both accesspoints are set to the same SSID and channel (6) and are set to mixed mode (B/G/N). After I two weeks they started to fail. When I connect to AP1 I don't reveive an IP-address of our DHCP server from our LAN. I'm able to connect to AP1 from our LAN. When I SSH to the box and I do an dmesg command, I see the following messages:
 
ath_bstuck_tasklet: stuck beacon; resetting (bmiss count 36)
ath_bstuck_tasklet: stuck beacon; resetting (bmiss count 36)
ath_bstuck_tasklet: stuck beacon; resetting (bmiss count 36)

[Code].....
 
I'm still testing these devices and I hope I can use these devices in our production environment,which is not possible with these errors and outages.
 
I can't connect to AP2 right now. I think the whole wireless interface isn't working anymore, unless I power off/power on the box. But it's hard testing when it works ok for two weeks and then stops.

View 3 Replies View Related

Netgear Wireless Router Not Accepting Password

Jul 4, 2012

I need to get my netgear wireless router. I have tried every password I've ever used to no avail.

View 1 Replies View Related

Cisco WAN :: 2600 - Router Not Accepting Keyboard Input On AUX Port?

May 16, 2012

I just configured cisco 2600 as TS for remote dial in via USRobotics modem, I can dial into router, but its not accepting my key board input.

View 2 Replies View Related

Cisco Wireless :: WAP321 Not Accepting WPA2 PSK Longer Than 32 Characters?

May 13, 2012

I just got one of these and it works pretty good except I can't get it to take more than a 32 character WPA2 PSK.  Tried using Firefox and IE and it doesn't make a difference.  This is for my house.  I'm retiring an old Cisco 1200 series AP and as well as a Cisco 1130.  Using the same PSK and it doesn't work.  Even if I just put 32 characters and just try typing more characters, it doesn't accept any more.Running 1.0.0.3 code and don't see anything newer or any firmware for it for that matter.

View 4 Replies View Related

Asus Pce N13 - Wifi Password Correct But Router Not Accepting

Feb 22, 2011

I have installed a new ASUS PCE-N13 network adapter. My problem is this: The network adapter easily detects my wireless router (full strength) so I click connect and it asks me for my p/w. I type the p/w in and my computer instantly tells me it is wrong. I know full well the p/w is right because I live with 2 other people and they both have laptops which connect no problem.

View 6 Replies View Related

Cisco Wireless :: WAP4410n Access Points Not Accepting Join Requests

Jul 5, 2012

I have 5x WAP4410N Cisco access points, the wireless is not responding to join request from wireless clients and i can only access the admin page from the LAN side. 

reboot does not work the only way to make it accept join requests is by changing parameters in the AP and save it, it will work for few hours then stops again. 

I cant seem to be able to open a TAC case.

View 1 Replies View Related

Linksys Wireless Router :: Mac Airport Not Accepting Signal From WRT110

Jul 22, 2011

Was online the other night when my network suddenly dropped out on me. I assumed it was the router, not my computer, so I restarted it and got nothing. Same with my modem. Then I completely reset the router and, obviously, lost the network I had set up. Didn't realize until today, when I downloaded the setup instructions and reinstalled the router with a new network that the problem might actually be with my computer. I can use the ethernet port to access the web both with the direct line from the modem and when using a line through my router, I just can't get my computer to work on the network I set up. I know the network is valid because it works with my smart phone and a couple of other devices. On my Mac, it shows up in the list of available networks and has full signal strength. Diagnostics in network preferences gives me the following message: "AirPort has a self-assigned IP address and may not be able to connect to the Internet."

View 2 Replies View Related

Linksys Wireless Router :: WRT320 - AP Is Not Accepting Added MACs

Jul 20, 2011

I have Linksys WRT320N acting as AP with Mac filtering, yesterday I noticed that even not added Mac addresses can access the network!!The settings in Mac Filter page as following:EnablePrevent PCs listed below from accessing the wireless network.MAC 01: XX:XX:XX:XX:XX:XXMAC 02: XX:XX:XX:XX:XX:XX...when I changed it to "Permit PCs listed below to access the wireless network" no one is able to connect to the network!!!I think the AP is not accepting the MACs I added!I restart the router (Turning on and off) with no luck.Firmware Version: v1.0.03.

View 1 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved