Cisco 6500 VPN SPA Adapter IPsec traffic is not flowing

Unanswered Question
Nov 4th, 2009
User Badges:

Hello. I have an 6500 VPN SPA Adapter. I run a site-to-site, digital certificate authentication scenario.

I have 2 Vlans in my crypto engine, one with a remote-access crypto map, the other with a site-to-site crypto map. I am only using now the site-to-site crypto map.

The IPsec negotiation completes successfully. Still, the traffic between ESN and PSN is not working.

My topology:

ESN(158.11.1.0/24) - security gateway (157.11.0.1/16) ---- (170.3.0.6 - ipsec interface) cisco spa vpn adapter (61.211.0.1 - clear ip interface) --- PSN(61.211.94.1/8)

ping from 158.11.1.1 to 64.211.94.1 does not work

running sh crypto engine accelerator statistic all

I see packets dropped statistic incrementing a lot


I have attached my configuration. Please contact me for any other details that may prove useful for you at [email protected]. Thank you very much.



Attachment: 
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.

Actions

This Discussion