I recently upgraded a 1710 router from 12.2 to 12.3. The router was setup to do IPSec/GRE tunnels. After the upgrade, the router refuses to encapsulate any interesting traffic?! I checked and the config looks the same except for some misc. commands that 12.3 added. The ACL's and routing are the same. However, when I generate traffic for the tunnel the "sho cry ips sa" command shows 0 packets encap and 0 packet send errors. I removed and reapplied the crypto maps and that didn't do any good.
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...