cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
234
Views
0
Helpful
1
Replies

ASA5510 v7.0.7 ignoring ACL changes!

davegibelli
Level 1
Level 1

I have made changes to nat and IPSec ACL's but the new lines in the ACL's are being ignored!

This results in packets that should be sent encrypted going out unencrypted even though the packets match the ACL.

On a different interface new rules for nat are not taking effect, thus packets are leaving the ASA without being natted!

Active/Failover in operation.

1 Reply 1

Ivan Martinon
Level 7
Level 7

Did you change these Crypto ACl's on the fly? Meaning did you remove crypto map, change settings and reapply the crypto map? If not then you need to bounce the tunnel to make this new changes occur. Were these changes applied on the remote end as well?

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card