Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Cisco 6500 VPN SPA Adapter IPsec traffic is not flowing

Hello. I have an 6500 VPN SPA Adapter. I run a site-to-site, digital certificate authentication scenario.

I have 2 Vlans in my crypto engine, one with a remote-access crypto map, the other with a site-to-site crypto map. I am only using now the site-to-site crypto map.

The IPsec negotiation completes successfully. Still, the traffic between ESN and PSN is not working.

My topology:

ESN(158.11.1.0/24) - security gateway (157.11.0.1/16) ---- (170.3.0.6 - ipsec interface) cisco spa vpn adapter (61.211.0.1 - clear ip interface) --- PSN(61.211.94.1/8)

ping from 158.11.1.1 to 64.211.94.1 does not work

running sh crypto engine accelerator statistic all

I see packets dropped statistic incrementing a lot

I have attached my configuration. Please contact me for any other details that may prove useful for you at cvintila@ixiacom.com. Thank you very much.

171
Views
0
Helpful
0
Replies
CreatePlease to create content