Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Anti-replay window size

Hello,
We would like to increase the anti-replay window size on our ISR routers connected to ASR using DMVPN. On ISR I can use up to 1024, but ASR only limited to 512.
I am wondering if I can configure two different window sizes on ISRs - 1024 and ASR- 512, connected to each other via DMVPN, with no implications/problems. (I believe 512 should be enough for ASR side but ISR would need more).

Thanks!

1 ACCEPTED SOLUTION

Accepted Solutions
Cisco Employee

Anti-replay window size

Yes you can have separate anit-replay windows sizes - the check is local and only done in inbound direction.

Now what you might want to remember is that enabling this feature will not imply existing connections will start using the new windows straight away.

2 REPLIES
Cisco Employee

Anti-replay window size

Yes you can have separate anit-replay windows sizes - the check is local and only done in inbound direction.

Now what you might want to remember is that enabling this feature will not imply existing connections will start using the new windows straight away.

New Member

Anti-replay window size

Thanks Marcin,

The SA will need to re-establish for anti-replay to kick in.

234
Views
0
Helpful
2
Replies
CreatePlease login to create content