We have installed a 4150 SX Cisco Intrusion Prevention System, Version 5.1(2)S240.0 sensor using vlan pairs.
The problem that we are experiencing is that when the Cisco vpn client is installed on Microsoft Vista, the IPS causes the IPSec tunnel to be broken shortly after the connection is made to the vpn3000 concentrator.
With widows xp and the same vpn client, we have no problem like this.
Is anyone aware of any problems relating to vista, the IPS and vpn client?
The first is only for the IPS-4260, and the second will work on all other Cisco IPS platforms.
Technically a service contract is required for the download and installation of any software updates.
However, the service contract requirement is not enforced with a license for Major Upgrades, Minor Upgrades, or Service Packs.
So the software won't prevent the installation if you don't have a license. But you should legally only install them if your have purchased the service contract.
The service contract is enforced by a license for Signature Updates and Engine Updates.
In your situation if you do not currently have a license, but do intend on purchasing a service contract, then go ahead and download and install the 5.1(5)E1 upgrade package and start your process for purchasing the service contract.
In the mean time you can also go ahead and request a Trial license for your sensor if you have not already done so.
This will allow you to bring your sensor up to date while you go through the purchasing process for your service contract.
DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in
HA DocumentationCode download linksGoalRequirementLimitationsSupported
ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationCo...
Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :