Not appearing debug output is not with cfmodule
Hi, I have a problem here I just can't solve. I have a unique model that contains the code in my header and footer called globalheader.cfm which gives the floor to cfmodule (see the code example below). Everything works, the only problem is that the debug output appear not. Debugging is enabled correctly and presents itself if I remove the tag to cfmodule call globalheader.cfm. Any help would be greatly appreciated.Thank you! It wasn't the answer, but it lead me to it!
The culprit was the cfcontent tag. I used it to remove the white space. I didn't know it would affect the output of debug too. I commented and now I see Debugging.
Tags: ColdFusion
Similar Questions
-
IPsec VPN Phase 2 does not. Need help with the debug output
Is someone can you please tell me why I can't establish ipsec Phase 2 negotiations. I'm trying to connect a 2651XM to a Pix 501.
Here are the isakmp debug and release of ipsec and configs. I checked the keys are the same. And sets of transformations look ok. No idea why its not working?
What is the bottom tell me?
===========================================================
01:32:37: IPSEC (validate_transform_proposal): invalid local address 1.1.1.2
01:32:37: ISAKMP:(0:2:SW:1): IPSec policy invalidated proposal
01:32:37: ISAKMP:(0:2:SW:1): politics of ITS phase 2 is not acceptable! (local 1.1.1.2 re)
Mote 1.1.1.3)
01:32:37: IPSEC (validate_transform_proposal): invalid local address 1.1.1.2
01:32:37: ISAKMP:(0:2:SW:1): IPSec policy invalidated proposal
01:32:37: ISAKMP:(0:2:SW:1): politics of ITS phase 2 is not acceptable! (local 1.1.1.2 re)
Mote 1.1.1.3)
===============================================================================
ISAKMP (0): start Quick Mode Exchange, M - ID - 1154286426:bb32fca6
crypto_isakmp_process_block: CBC 1.1.1.2 1.1.1.3 dest
ISAKMP (0): processing NOTIFY payload Protocol 14 2
SPI 2224366689, message ID = 1503891776
ISAKMP (0): removal of spi 1629787524 message ID = 3140680870
to return to the State is IKMP_NO_ERR_NO_TRANS
pixfirewall #.
pixfirewall # sh crypto is
ISAKMP (0): start Quick Mode Exchange, M - ID 400184159:17da535f
crypto_isakmp_process_block: CBC 1.1.1.2 1.1.1.3 dest
ISAKMP (0): processing NOTIFY payload Protocol 14 2
SPI 2649583861, message ID = 1778335964 a.
ISAKMP (0): removal of spi 4117818781 message ID = 400184159
status code returned is IKMP_NO_ERR_NO_TRANSkmp its
Total: 1
Embryonic: 0
Src DST in the meantime created State
1.1.1.2 1.1.1.3 QM_IDLE 0 0
pixfirewall #.
ISAKMP (0): start Quick Mode Exchange, M - ID 923039456:370476e0
crypto_isakmp_process_block: CBC 1.1.1.2 1.1.1.3 dest
ISAKMP (0): processing NOTIFY payload Protocol 14 2
SPI 2163779852, message ID = 2746774364
ISAKMP (0): removal of spi 212465792 message ID = 923039456
to return to the State is IKMP_NO_ERR_NO_TRANSexiClosure of session
CCC cryp #sh
CCC #sh crypto isakmp his
status of DST CBC State conn-id slot
1.1.1.2 1.1.1.3 QM_IDLE 1 0 ACTIVECCC #ping 192.168.1.1
Type to abort escape sequence.
Send 5, echoes ICMP 100 bytes to 192.168.1.1, time-out is 2 seconds:
.....
Success rate is 0% (0/5)CCC #ping 192.168.1.5
Type to abort escape sequence.
Send 5, echoes ICMP 100 bytes to 192.168.1.5, time-out is 2 seconds:
.....
Success rate is 0% (0/5)
CCC #debug isakmp crypto
Crypto ISAKMP debug is on
CCC #debug crypto ipsec
Crypto IPSEC debugging is on
Crypto CCC talkative #debug
detailed debug output debug is on
CCC #ping 192.168.1.5Type to abort escape sequence.
Send 5, echoes ICMP 100 bytes to 192.168.1.5, time-out is 2 seconds:
.....
Success rate is 0% (0/5)
CCC #.
00:51:24: ISAKMP (0:134217729): received packet of 1.1.1.3 dport 500 sport 500
Global (R) QM_IDLE
00:51:24: ISAKMP: node set 1268073006 to QM_IDLE
00:51:24: ISAKMP:(0:1:SW:1): HASH payload processing. Message ID = 1268073006
00:51:24: ISAKMP:(0:1:SW:1): treatment ITS payload. Message ID = 1268073006
00:51:24: ISAKMP: (0:1:SW:1): proposal of IPSec checking 1
00:51:24: ISAKMP: turn 1, AH_SHA
00:51:24: ISAKMP: attributes of transformation:
00:51:24: ISAKMP: program is 1 (Tunnel)
00:51:24: ISAKMP: type of life in seconds
00:51:24: ISAKMP: life of HIS (basic) of 28800
00:51:24: ISAKMP: type of life in kilobytes
00:51:24: ISAKMP: service life of SA (IPV) 0x0 0 x 46 0 50 x 0 x 0
00:51:24: ISAKMP: authenticator is HMAC-SHA
00:51:24: ISAKMP: (0:1:SW:1): atts are acceptable.
00:51:24: ISAKMP: (0:1:SW:1): proposal of IPSec checking 1
00:51:24: ISAKMP: turn 1, ESP_3DES
00:51:24: ISAKMP: attributes of transformation:
00:51:24: ISAKMP: program is 1 (Tunnel)
00:51:24: ISAKMP: type of life in seconds
00:51:24: ISAKMP: life of HIS (basic) of 28800
00:51:24: ISAKMP: type of life in kilobytes
00:51:24: ISAKMP: service life of SA (IPV) 0x0 0 x 46 0 50 x 0 x 0
00:51:24: ISAKMP: (0:1:SW:1): atts are acceptable.
00:51:24: IPSEC (validate_proposal_request): part #1 of the proposal
(Eng. msg key.) Local INCOMING = 1.1.1.2, distance = 1.1.1.3.
local_proxy = 10.10.10.0/255.255.255.0/0/0 (type = 4),
remote_proxy = 192.168.1.0/255.255.255.0/0/0 (type = 4),
Protocol = AH, transform = ah-sha-hmac (Tunnel),
lifedur = 0 and 0kb in
SPI = 0 x 0 (0), id_conn = 0, keysize = 0, flags = 0 x 2
00:51:24: IPSEC (validate_proposal_request): part #2 of the proposal
(Eng. msg key.) Local INCOMING = 1.1.1.2, distance = 1.1.1.3.
local_proxy = 10.10.10.0/255.255.255.0/0/0 (type = 4),
remote_proxy = 192.168.1.0/255.255.255.0/0/0 (type = 4),
Protocol = ESP, transform = esp-3des (Tunnel),
lifedur = 0 and 0kb in
SPI = 0 x 0 (0), id_conn = 0, keysize = 0, flags = 0 x 2
00:51:24: IPSEC (validate_transform_proposal): invalid local address 1.1.1.2
00:51:24: ISAKMP:(0:1:SW:1): IPSec policy invalidated proposal
00:51:24: ISAKMP:(0:1:SW:1): politics of ITS phase 2 is not acceptable! (local 1.1.1.2 re)
Mote 1.1.1.3)
00:51:24: ISAKMP: node set-429221146 to QM_IDLE
00:51:24: ISAKMP: (0:1:SW:1): Protocol to send NOTIFIER PROPOSAL_NOT_CHOSEN 2
SPI 2237255312, message ID =-429221146
00:51:24: ISAKMP:(0:1:SW:1): sending package to 1.1.1.3 my_port 500 peer_port 500
(R) QM_IDLE
00:51:24: ISAKMP: (0:1:SW:1): purge the node-429221146
00:51:24: ISAKMP: (0:1:SW:1): node 1268073006 REAL reason «QM rejec» error suppression
Ted. "
00:51:24: ISAKMP (0:134217729): unknown IKE_MESG_FROM_PEER, IKE_QM_EXCH entry:
node 1268073006: status = IKE_QM_READY
00:51:24: ISAKMP: (0:1:SW:1): entrance, node 1268073006 = IKE_MESG_FROM_PEER, IKE_QM_
EXCH
00:51:24: ISAKMP: (0:1:SW:1): former State = new State IKE_QM_READY = IKE_QM_READY
00:51:24: % CRYPTO-6-IKMP_MODE_FAILURE: fast processing mode has failed with the counterpart
with 1.1.1.3
00:51:54: ISAKMP (0:134217729): received packet of 1.1.1.3 dport 500 sport 500
Global (R) QM_IDLE
00:51:54: ISAKMP: node set-500877443 to QM_IDLE
00:51:54: ISAKMP:(0:1:SW:1): HASH payload processing. Message ID =-500877443
00:51:54: ISAKMP:(0:1:SW:1): treatment ITS payload. Message ID =-500877443
00:51:54: ISAKMP: (0:1:SW:1): proposal of IPSec checking 1
00:51:54: ISAKMP: turn 1, AH_SHA
00:51:54: ISAKMP: attributes of transformation:
00:51:54: ISAKMP: program is 1 (Tunnel)
00:51:54: ISAKMP: type of life in seconds
00:51:54: ISAKMP: life of HIS (basic) of 28800
00:51:54: ISAKMP: type of life in kilobytes
00:51:54: ISAKMP: service life of SA (IPV) 0x0 0 x 46 0 50 x 0 x 0
00:51:54: ISAKMP: authenticator is HMAC-SHA
00:51:54: ISAKMP: (0:1:SW:1): atts are acceptable.
00:51:54: ISAKMP: (0:1:SW:1): proposal of IPSec checking 1
00:51:54: ISAKMP: turn 1, ESP_3DES
00:51:54: ISAKMP: attributes of transformation:
00:51:54: ISAKMP: program is 1 (Tunnel)
00:51:54: ISAKMP: type of life in seconds
00:51:54: ISAKMP: life of HIS (basic) of 28800
00:51:54: ISAKMP: type of life in kilobytes
00:51:54: ISAKMP: service life of SA (IPV) 0x0 0 x 46 0 50 x 0 x 0
00:51:54: ISAKMP: (0:1:SW:1): atts are acceptable.
00:51:54: IPSEC (validate_proposal_request): part #1 of the proposal
(Eng. msg key.) Local INCOMING = 1.1.1.2, distance = 1.1.1.3.
local_proxy = 10.10.10.0/255.255.255.0/0/0 (type = 4),
remote_proxy = 192.168.1.0/255.255.255.0/0/0 (type = 4),
Protocol = AH, transform = ah-sha-hmac (Tunnel),
lifedur = 0 and 0kb in
SPI = 0 x 0 (0), id_conn = 0, keysize = 0, flags = 0 x 2
00:51:54: IPSEC (validate_proposal_request): part #2 of the proposal
(Eng. msg key.) Local INCOMING = 1.1.1.2, distance = 1.1.1.3.
local_proxy = 10.10.10.0/255.255.255.0/0/0 (type = 4),
remote_proxy = 192.168.1.0/255.255.255.0/0/0 (type = 4),
Protocol = ESP, transform = esp-3des (Tunnel),
lifedur = 0 and 0kb in
SPI = 0 x 0 (0), id_conn = 0, keysize = 0, flags = 0 x 2
00:51:54: IPSEC (validate_transform_proposal): invalid local address 1.1.1.2
00:51:54: ISAKMP:(0:1:SW:1): IPSec policy invalidated proposal
00:51:54: ISAKMP:(0:1:SW:1): politics of ITS phase 2 is not acceptable! (local 1.1.1.2 re)
Mote 1.1.1.3)
00:51:54: ISAKMP: node set-701693099 to QM_IDLE
00:51:54: ISAKMP: (0:1:SW:1): Protocol to send NOTIFIER PROPOSAL_NOT_CHOSEN 2
SPI 2237255312, message ID =-701693099
00:51:54: ISAKMP:(0:1:SW:1): sending package to 1.1.1.3 my_port 500 peer_port 500
(R) QM_IDLE
00:51:54: ISAKMP: (0:1:SW:1): purge the node-701693099
00:51:54: ISAKMP: (0:1:SW:1): node-500877443 error suppression REAL reason "QM rejec.
Ted. "
00:51:54: ISAKMP (0:134217729): unknown IKE_MESG_FROM_PEER, IKE_QM_EXCH entry:
node-500877443: State = IKE_QM_READY
00:51:54: ISAKMP: (0:1:SW:1): entrance, node-500877443 = IKE_MESG_FROM_PEER, IKE_QM_
EXCH
00:51:54: ISAKMP: (0:1:SW:1): former State = new State IKE_QM_READY = IKE_QM_READY
00:52:14: ISAKMP: (0:1:SW:1): purge the node 1268073006
CCC #sh crypto isakmp his
status of DST CBC State conn-id slot
1.1.1.2 1.1.1.3 QM_IDLE 1 0 ACTIVECCC #ping 192.168.1.5
Type to abort escape sequence.
Send 5, echoes ICMP 100 bytes to 192.168.1.5, time-out is 2 seconds:00:52:44: ISAKMP: (0:1:SW:1): purge node-500877443...
00:52:50: ISAKMP (0:134217729): received packet of 1.1.1.3 dport 500 sport 500
Global (R) QM_IDLE
00:52:50: ISAKMP: node set 1186613650 to QM_IDLE
00:52:50: ISAKMP:(0:1:SW:1): HASH payload processing. Message ID = 1186613650
00:52:50: ISAKMP:(0:1:SW:1): treatment ITS payload. Message ID = 1186613650
00:52:50: ISAKMP: (0:1:SW:1): proposal of IPSec checking 1
00:52:50: ISAKMP: turn 1, AH_SHA
00:52:50: ISAKMP: attributes of transformation:
00:52:50: ISAKMP: program is 1 (Tunnel)
00:52:50: ISAKMP: type of life in seconds
00:52:50: ISAKMP: life of HIS (basic) of 28800
00:52:50: ISAKMP: type of life in kilobytes
00:52:50: ISAKMP: service life of SA (IPV) 0x0 0 x 46 0 50 x 0 x 0
00:52:50: ISAKMP: authenticator is HMAC-SHA
00:52:50: ISAKMP: (0:1:SW:1): atts are acceptable.
00:52:50: ISAKMP: (0:1:SW:1): proposal of IPSec checking 1
00:52:50: ISAKMP: turn 1, ESP_3DES
00:52:50: ISAKMP: attributes of transformation:
00:52:50: ISAKMP: program is 1 (Tunnel)
00:52:50: ISAKMP: type of life in seconds
00:52:50: ISAKMP: life of HIS (basic) of 28800
00:52:50: ISAKMP: type of life in kilobytes
00:52:50: ISAKMP: service life of SA (IPV) 0x0 0 x 46 0 50 x 0 x 0
00:52:50: ISAKMP: (0:1:SW:1): atts are acceptable.
00:52:50: IPSEC (validate_proposal_request): part #1 of the proposal
(Eng. msg key.) Local INCOMING = 1.1.1.2, distance = 1.1.1.3.
local_proxy = 10.10.10.0/255.255.255.0/0/0 (type = 4),
remote_proxy = 192.168.1.0/255.255.255.0/0/0 (type = 4),
Protocol = AH, transform = ah-sha-hmac (Tunnel),
lifedur = 0 and 0kb in
SPI = 0 x 0 (0), id_conn = 0, keysize = 0, flags = 0 x 2
00:52:50: IPSEC (validate_proposal_request): part #2 of the proposal
(Eng. msg key.) Local INCOMING = 1.1.1.2, distance = 1.1.1.3.
local_proxy = 10.10.10.0/255.255.255.0/0/0 (type = 4),
remote_proxy = 192.1.68.1.0/255.255.255.0/0/0 (type = 4),
Protocol = ESP, transform = esp-3des (Tunnel),
lifedur = 0 and 0kb in
SPI = 0 x 0 (0), id_conn = 0, keysize = 0, flags = 0 x 2
00:52:50: IPSEC (validate_transform_proposal): invalid local address 1.1.1.2
00:52:50: ISAKMP:(0:1:SW:1): IPSec policy invalidated proposal
00:52:50: ISAKMP:(0:1:SW:1): politics of ITS phase 2 is not acceptable! (local 1.1.1.2 re)
Mote 1.1.1.3)
00:52:50: ISAKMP: node set-1113601414 to QM_IDLE
00:52:50: ISAKMP: (0:1:SW:1): Protocol to send NOTIFIER PROPOSAL_NOT_CHOSEN 2
SPI 2237255312, message ID =-1113601414
00:52:50: ISAKMP:(0:1:SW:1): sending package to 1.1.1.3 my_port 500 peer_port 500
(R) QM_IDLE
00:52:50: ISAKMP: (0:1:SW:1): purge the node-1113601414
00:52:50: ISAKMP: (0:1:SW:1): node 1186613650 REAL reason «QM rejec» error suppression
Ted. "
00:52:50: ISAKMP (0:134217729): unknown IKE_MESG_FROM_PEER, IKE_QM_EXCH entry:
node 1186613650: status = IKE_QM_READY
00:52:50: ISAKMP: (0:1:SW:1): entrance, node 1186613650 = IKE_MESG_FROM_PEER, IKE_QM_
EXCH
00:52:50: ISAKMP: (0:1:SW:1): former State = new State IKE_QM_READY = IKE_QM_READY
00:52:50: % CRYPTO-6-IKMP_MODE_FAILURE: fast processing mode has failed with the counterpart
with 1.1.1.3.
Success rate is 0% (0/5)
CCC #.
00:53:20: ISAKMP (0:134217729): received packet of 1.1.1.3 dport 500 sport 500
Global (R) QM_IDLE
00:53:20: ISAKMP: node set 459446741 to QM_IDLE
00:53:20: ISAKMP:(0:1:SW:1): HASH payload processing. Message ID = 459446741
00:53:20: ISAKMP:(0:1:SW:1): treatment ITS payload. Message ID = 459446741
00:53:20: ISAKMP: (0:1:SW:1): proposal of IPSec checking 1
00:53:20: ISAKMP: turn 1, AH_SHA
00:53:20: ISAKMP: attributes of transformation:
00:53:20: ISAKMP: program is 1 (Tunnel)
00:53:20: ISAKMP: type of life in seconds
00:53:20: ISAKMP: life of HIS (basic) of 28800
00:53:20: ISAKMP: type of life in kilobytes
00:53:20: ISAKMP: service life of SA (IPV) 0x0 0 x 46 0 50 x 0 x 0
00:53:20: ISAKMP: authenticator is HMAC-SHA
00:53:20: ISAKMP: (0:1:SW:1): atts are acceptable.
00:53:20: ISAKMP: (0:1:SW:1): proposal of IPSec checking 1
00:53:20: ISAKMP: turn 1, ESP_3DES
00:53:20: ISAKMP: attributes of transformation:
00:53:20: ISAKMP: program is 1 (Tunnel)
00:53:20: ISAKMP: type of life in seconds
00:53:20: ISAKMP: life of HIS (basic) of 28800
00:53:20: ISAKMP: type of life in kilobytes
00:53:20: ISAKMP: service life of SA (IPV) 0x0 0 x 46 0 50 x 0 x 0
00:53:20: ISAKMP: (0:1:SW:1): atts are acceptable.
00:53:20: IPSEC (validate_proposal_request): part #1 of the proposal
(Eng. msg key.) Local INCOMING = 1.1.1.2, distance = 1.1.1.3.
local_proxy = 10.10.10.0/255.255.255.0/0/0 (type = 4),
remote_proxy = 192.168.1.0/255.255.255.0/0/0 (type = 4),
Protocol = AH, transform = ah-sha-hmac (Tunnel),
lifedur = 0 and 0kb in
SPI = 0 x 0 (0), id_conn = 0, keysize = 0, flags = 0 x 2
00:53:20: IPSEC (validate_proposal_request): part #2 of the proposal
(Eng. msg key.) Local INCOMING = 1.1.1.2, distance = 1.1.1.3.
local_proxy = 10.10.10.0/255.255.255.0/0/0 (type = 4),
remote_proxy = 192.168.1.0/255.255.255.0/0/0 (type = 4),
Protocol = ESP, transform = esp-3des (Tunnel),
lifedur = 0 and 0kb in
SPI = 0 x 0 (0), id_conn = 0, keysize = 0, flags = 0 x 2
00:53:20: IPSEC (validate_transform_proposal): invalid local address 1.1.1.2
00:53:20: ISAKMP:(0:1:SW:1): IPSec policy invalidated proposal
00:53:20: ISAKMP:(0:1:SW:1): politics of ITS phase 2 is not acceptable! (local 1.1.1.2 re)
Mote 1.1.1.3)
00:53:20: ISAKMP: node set-1692074376 to QM_IDLE
00:53:20: ISAKMP: (0:1:SW:1): Protocol to send NOTIFIER PROPOSAL_NOT_CHOSEN 2
SPI 2237255312, message ID =-1692074376
00:53:20: ISAKMP:(0:1:SW:1): sending package to 1.1.1.3 my_port 500 peer_port 500
(R) QM_IDLE
00:53:20: ISAKMP: (0:1:SW:1): purge the node-1692074376
00:53:20: ISAKMP: (0:1:SW:1): REAL reason for node deletion 459446741 error "reject QM.
Ed ".
00:53:20: ISAKMP (0:134217729): unknown IKE_MESG_FROM_PEER, IKE_QM_EXCH entry:
node 459446741: status = IKE_QM_READY
00:53:20: ISAKMP: (0:1:SW:1): entrance, node 459446741 = IKE_MESG_FROM_PEER, IKE_QM_E
XCH
00:53:20: ISAKMP: (0:1:SW:1): former State = new State IKE_QM_READY = IKE_QM_READY
00:53:40: ISAKMP: (0:1:SW:1): purge the node 1186613650
00:53:42: % LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/0, chang
State of Ed down
00:54:10: ISAKMP: (0:1:SW:1): purge the node 459446741===============================================================================
6.2 (2) version PIX
ethernet0 nameif outside security0
nameif ethernet1 inside the security100
activate 8Ry2YjIyt7RRXU24 encrypted password
2KFQnbNIdI.2KYOU encrypted passwd
pixfirewall hostname
domain ciscopix.com
fixup protocol ftp 21
fixup protocol http 80
fixup protocol h323 h225 1720
fixup protocol h323 ras 1718-1719
fixup protocol they 389
fixup protocol rsh 514
fixup protocol rtsp 554
fixup protocol smtp 25
fixup protocol sqlnet 1521
fixup protocol sip 5060
fixup protocol 2000 skinny
names of
permit 192.168.1.0 ip access list outside_cryptomap_20 255.255.255.0 10.10.10.0
255.255.255.0
permit 192.168.1.0 ip access list inside_outbound_nat0_acl 255.255.255.0 10.10.1
255.255.255.0 0.0
pager lines 24
interface ethernet0 10baset
interface ethernet1 10full
Outside 1500 MTU
Within 1500 MTU
1.1.1.3 outside IP address 255.255.255.0
IP address inside 192.168.1.1 255.255.255.0
alarm action IP verification of information
alarm action attack IP audit
location of PDM 10.10.10.0 255.255.255.0 inside
location of PDM 10.10.10.0 255.255.255.0 outside
PDM logging 100 information
history of PDM activate
ARP timeout 14400
Global 1 interface (outside)
NAT (inside) 0-list of access inside_outbound_nat0_acl
NAT (inside) 1 0.0.0.0 0.0.0.0 0 0
Route outside 0.0.0.0 0.0.0.0 1.1.1.2 1
Timeout xlate 0:05:00
Timeout conn 0 half-closed 01:00:10: 00 udp 0:02:00 CPP 0: h323 from 10:00 0:05:00 TR
p 0:30:00 sip_media 0:02:00
Timeout, uauth 0:05:00 absolute
GANYMEDE + Protocol Ganymede + AAA-server
RADIUS Protocol RADIUS AAA server
AAA-server local LOCAL Protocol
Enable http server
http 192.168.1.0 255.255.255.0 inside
No snmp server location
No snmp Server contact
SNMP-Server Community public
No trap to activate snmp Server
enable floodguard
Permitted connection ipsec sysopt
No sysopt route dnat
Crypto ipsec transform-set Petaluma_VPN ah-sha-hmac esp-3des
outside_map 20 ipsec-isakmp crypto map
card crypto outside_map 20 match address outside_cryptomap_20
card crypto outside_map 20 peers set 1.1.1.2
card crypto outside_map 20 game of transformation-Petaluma_VPN
outside_map interface card crypto outside
ISAKMP allows outside
ISAKMP key * 1.1.1.2 address netmask 255.255.255.255 No.-xauth No.-config-m
Ode
part of pre authentication ISAKMP policy 20
ISAKMP policy 20 3des encryption
ISAKMP policy 20 md5 hash
20 2 ISAKMP policy group
ISAKMP duration strategy of life 20 86400
Telnet timeout 5
SSH timeout 5
dhcpd address 192.168.1.5 - 192.168.1.33 inside
dhcpd lease 3600
dhcpd ping_timeout 750
dhcpd outside auto_config
dhcpd allow inside
Terminal width 80
Cryptochecksum:8c0d4948407071d3515f1546cf8bc147
: end
pixfirewall #.
=========================================================================
CCC #sh run
Building configuration...Current configuration: 1328 bytes
!
version 12.4
horodateurs service debug uptime
Log service timestamps uptime
no password encryption service
!
CCC host name
!
boot-start-marker
start the system flash c2600-adventerprisek9 - mz.124 - 25d.bin
boot-end-marker
!
!
No aaa new-model
no location network-clock-participate 1
No network-clock-participate wic 0
IP cef
!
!
!
!!
!
!
crypto ISAKMP policy 2
BA 3des
md5 hash
preshared authentication
Group 2
address key crypto isakmp 1.1.1.3 cisco123
!
!
Crypto ipsec transform-set Petaluma_VPN ah-sha-hmac esp-3des
!
map Petaluma_1 1 ipsec-isakmp crypto
defined peer 1.1.1.3
game of transformation-Petaluma_VPN
match address 100
!
!
!
!
interface FastEthernet0/0
1.1.1.2 IP 255.255.255.0
automatic speed
Half duplex
!
interface Serial0/0
no ip address
Shutdown
clock speed of 56000
!
interface FastEthernet0/1
10.10.10.2 IP address 255.255.255.0
automatic duplex
automatic speed
card crypto Petaluma_1
!
IP forward-Protocol ND
IP route 192.168.1.0 255.255.255.0 1.1.1.3
!
!
no ip address of the http server
no ip http secure server
!
access-list 100 permit ip 10.10.10.0 0.0.0.255 192.168.1.0 0.0.0.255
control plan
!
!
!
!
!
!
!
!
!
!
Line con 0
line to 0
line vty 0 4
opening of session
!
!
endCCC #.
!
!
!
crypto ISAKMP policy 2
BA 3des
md5 hash
preshared authentication
Group 2
address key crypto isakmp 1.1.1.3 cisco123
!
!
Crypto ipsec transform-set Petaluma_VPN ah-sha-hmac esp-3des
!
map Petaluma_1 1 ipsec-isakmp crypto
defined peer 1.1.1.3
game of transformation-Petaluma_VPN
match address 100
!
!
!
!
interface FastEthernet0/01.1.1.2 IP 255.255.255.0
automatic speed
Half duplex
!
interface Serial0/0
no ip address
Shutdown
clock speed of 56000
!
interface FastEthernet0/1
10.10.10.2 IP address 255.255.255.0
automatic duplex
automatic speed
card crypto Petaluma_1
!
IP forward-Protocol ND
IP route 192.168.1.0 255.255.255.0 1.1.1.3
!
!
no ip address of the http server
no ip http secure server
!
access-list 100 permit ip 10.10.10.0 0.0.0.255 192.168.1.0 0.0.0.255Hi David,
Overlooking the configuration of the router, it seems that you have applied the encryption card to the wrong interface.
interface FastEthernet0/0
1.1.1.2 IP 255.255.255.0
automatic speed
Half duplex
!
interface FastEthernet0/1
10.10.10.2 IP address 255.255.255.0
automatic duplex
automatic speed
card crypto Petaluma_1
Given that the pix will attempt to build a VPN tunnel to 1.1.1.2 map encryption Petaluma_1 must be applied to FastEthernet0/0, not FastEthernet 0/1.
Let me know if it helps.
Thank you
Loren
-
My suddnely of CF9 server stopped showing debug output. Debug output is set to Yes and I have the correct ip address. I even tried < cfsetting showDebugOutput = "true" >, but nothing appears. Any ideas?
Found the problem. When upgrading to Windows 10, the prioritised card vpn setting the IP Address of the server instead of my local ip. I tried to use the DHCP protocol listed in ipconfig for VPN, but it did not work. Then, I changed the setting of the adapter for the VPN connection to use my local IP address and it worked.
-
You can change the font size using the form in the preview (not with the text box). Having also arrow drawing trouble in preview.
What problems are you having with the arrow? You go to Tools-> annotate-> arrow and an arrow appears. Then you can drag around the head and tail to make it to the desired location.
-
Many web sites does not not with correct format minus 8.0
Many web sites does not not with correct format minus 8.0 but work fine with IE. At first glance, my internet connection has problems because the text was load but the format and images had problems, but not the internet connection. Example is www.msnbc.com or www.blueovalnews.com
Clear the cache and cookies from sites that cause problems.
"Clear the Cache":
- Tools > Options > advanced > network > storage (Cache) offline: 'clear now '.
'Delete Cookies' sites causing problems:
- Tools > Options > privacy > Cookies: "show the Cookies".
Start Firefox in Firefox to solve the issues in Safe Mode to check if one of the extensions or if hardware acceleration is the cause of the problem (switch to the DEFAULT theme: Firefox (Tools) > Add-ons > appearance/themes).
- Makes no changes on the start safe mode window.
- https://support.Mozilla.com/kb/safe+mode
-
Screensaver not working only not with the hot corner
I used to have my screensaver set to start with the upper left corner of my screen using the feature 'hot corner '.
However, lately, he doesn't. I tested it with all the other corners, and it does not work.
I tried other functions with the hot corners and they all work very well. This is just the screensaver that does not work.
I can set the timer and lights up the screen saver, but not with the hot corner.
Someone can help me with this, or have any suggestions?
See you soon!
Hello Kaijuman,
Thank you for using communities of Apple Support.
I understand that when you try to start the screen saver by using Active corners it is not. I would like you to test this behavior then starts in safe mode, and then try another user account on your Mac.
Start in safe mode
Follow these steps to start in safe mode.
- Start or restart your Mac.
- As soon as you hear the startup tone, hold down the SHIFT key.
- Release the SHIFT key when you see the logo Apple appears on the screen.
After the Apple logo appears, this may take longer than usual to reach the login screen or your office. This is because your Mac performs a check of directory of your drive to boot in safe mode.
To leave safe mode, restart your computer without pressing any key during startup
How to test with another user account
You can find out if unexpected behavior is related to the user file or a parameter in trying to reproduce the problem to a different user account. This process includes creating a new user account, connect to it and test for the issue.
Create a test user account
- In the Apple menu, choose System Preferences.
- Click the users and groups in the System Preferences window.
- Click the lock icon and enter an administrator name and password.
- Click on the button Add (+) below the list of users.
- Choose a type of user in the new pop-up menu.
- Give the user a name and first name, account name, and password.
- Click OK.
- Close the System Preferences window.
Connect to the test user account
Log out of your current user account by choosing logout in the Apple menu, and then open a session the new account that you created. If you are prompted to login with your iCloud or Apple ID account when you log in, skip this step.
Try to reproduce the problem
Please let us know what the outcome is so we can help you.
See you soon.
-
BlackBerry sync Outlook 2007 Notes with BlackBerry classic software
On my old BlackBerry Curve I could synchronize Contacts, calendar and Notes with Outlook. Notes Sync seems not to be an option with the classics.
Does anyone know if there is a workaround or process in order to obtain the classic notes and keep them in sync with my Windows 7 PC? Thank you.
Update: I read another post regrding the same question on this forum and solved my problem, but not as I expected. The resolution is to install Evernote on the PC (Win 7) and re - install Evernote on the American (I had removed thinking I would never need it). I use Office 2007 and when I right click a note in Outlook I see an option to export to Evernote 5. I exported all my notes, and instantly they appeared on the BlackBerry.
Notes are always available in Outloook but synchronization only is in Evernote. At least I have my notes available on the BlackBerry. Everything is good now and I'm still discovering all of the goodies on the new classic.
Maybe someone knows somrthing I don't have and will answer, my question is what is so classic on a classic, the keyboard?
Classic quid software to synchronize Notes, anyone can do except BB.
Look at what this software has said: "our product restores the classic legacy USB come with BlackBerry devices sync feature.
-
AP records do not with BASIC MAC
We run WLC version 5.2.193.0 with 20 access points. But you can not save to the controller
debugging on the wlc
* 14:51:38.866 Jul 19: could not process CAPWAP 10.29.32.35:7173 package
* 14:51:41.866 Jul 19: 00:12:01:c5:c0:c4 AP records do not with the Mac BASE.
* 14:51:41.866 Jul 19: State 00:12:01:c5:c0:c4 machine Manager: failed to process the msg = State 5 = 8 from 10.29.32.35:7173 typeconnection to the access point:
* 12:50:39.378 Jul 19: % 3-CAPWAP-ERRORLOG: dating BACK to the DISCOVERY of FASHION
* 12:50:39.379 Jul 19: % DTLS-5-SEND_ALERT: send WARNING: close notify alert at 10.29.25.241
* 12:50:40.922 Jul 19: % CAPWAP-5-CHANGED: CAPWAP changed state of DISCOVERY
* 12:50:40.923 Jul 19: % CAPWAP-5-CHANGED: CAPWAP changed state of DISCOVERY
* 12:50:40.926 Jul 19: bsnInitRcbSlot: slot 0 has NO radio
* 12:50:40.927 Jul 19: bsnInitRcbSlot: slot 1 has NO radio
* 12:50:40.943 Jul 19: bsnUnlockDevice: not raise radio: radio 0 is disable admin
* 12:50:40.943 Jul 19: bsnUnlockDevice: not raise radio: radio 1 is able to disable admin
* 12:50:50.947 Jul 19: % 3-CAPWAP-ERRORLOG: go join a capwap controller
* 12:50:51.000 Jul 19: % CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.29.25.241 peer_port: 5246
* 12:50:52.806 Jul 19: % CAPWAP-5-DTLSREQSUCC: DTLS connection created successfully peer_ip: 10.29.25.241 peer_port: 5246
* 12:50:52.808 Jul 19: % CAPWAP-5-SENDJOIN: send request to join 10.29.25.241
* 12:50:52.808 Jul 19: % CAPWAP-5-CHANGED: CAPWAP changed State to ADHERE
* 12:50:53.366 Jul 19: % CAPWAP-5-CHANGED: CAPWAP changed state CFGThe AP is also in the authentication list
(AUTO-FRWHMAG-ACCB1) > auth-list
Allow the MIC APs against AAA... disabled
Allow the LSC APs against Auth-list... disabledLet APs with MIC - manufactured installed... active c
Let APs with SSC-... a self-signed certificate enabled
Let APs with LSC - locally important disabled CERT...Key Type Mac Addr Cert hash
----------------------- ---------- ------------------------------------------
00:12:01:C5:C0:C4 SSC f593d3bf2875508c5e7a2005820b56bc2ef48f50Unfortunately I did not access phyiscal to this access point, so I can't 'convert' it. Any other ideas?
Thank you
Frank
Frank,
Looks like you have a bad AP because it does not detect the installed radios:
* 12:50:40.926 Jul 19: bsnInitRcbSlot: slot 0 has NO radio
* 12:50:40.927 Jul 19: bsnInitRcbSlot: slot 1 has NO radioThis case of wil the PA for not being able to join the WLC. I will seek to have it replaced.
Thank you
Lee
-
Why FP 10 works with firefox but not with IE8
I down loaded as follows to uninstall PS xp, FP plugin and debug FP of the link in one of your answers. now I can watch YouTube with firefox but not with IE8. You asked me before if I was using 16 bits. What and how do I know? Please help I want to just watch YouTube on IE!
Hi, Shag, I gave you the instructions that you need, but you keep away from further discussions and lack of messages and your information is scattered. So you don't take the time to read even the threads you started! Nobody has the time to search your information everywhere in the forum, then you did not bother to answer when I answered you. You answered once, but until you take back any use.
If you are looking for a solution with a single click, you are looking for for a long time.
Kind regards
eidnolb
-
When I share a note with a checklist, I can see when the other person check of an item. I do not see when registering an item (it is disabled). Why?
Try switching your Notes on / off under settings > iCloud or maybe restart the device-restart your iPhone, iPad or iPod touch - Apple Support to see if this could solve the problem.
-
How can implement you not with Tim Capsule and AirPort their simulation on the iMac?
Hello
How can implement you not with Time Capsule and AirPort their simulation on the iMac?
I don't know what you're asking.
AirPort Extreme is a wireless router.
A Time Capsule airport is an AirPort Extreme with a built-in hard drive for data storage.
An iMac is a Mac computer.
An iMac is not a wireless router, so he is unable to perform the functions of a wireless router.
-
How to send an audio message, but not with imessage?
How to send an audio message, but not with imessage?
Find another app/service that will allow you to do. Or record a voice memo using the voice recorder application and attach to an SMS.
-
My iPhone and iPad emails are synchronized, but not with my Mac Pro? Example, when I delete an email from my iPad, it is deleted in my iPhone but not my Mac computer. How to connect the three...
An e-mail account? More than one account? All accounts?
Who is the provider?
What type of IMAP/Exchange or Pop3 account?
Only IMAP/Exchange accounts synchronize the device and some accounts as Google can be configured in any way.
-
iPads not working only not with the cache server
Hello!
We have implemented a Server Cache El Capitan... And the strange thing is that it works with macs and iPhones but not with iPads! Has anyone of you ever heard of something similar?
Thanks in advance!
Carl
It works with macs and iPhones but not with iPads!
There are many variables that affect how to find caching servers Apple devices. Signed iPads on the same account iCloud like Macs and iPhones, or more precisely, are the accounts that iPads are signed in registered in the same country as the public IP address of the server being cached? If your organization uses multiple public IP addresses, are the server cache and your DNS server set up correctly in what concerns these addresses? Did you restart the iPads after implementation of the caching server, so that they immediately "forget" that they have found no update server caching and are forced to review? (Restart devices - not the server!-is also recommended if you change the public address record in DNS.) IPads use a different local subnet as other devices, maybe a caching server is not configured to serve?
We can help you, but we need more information.
-
HotSpot iOS 9.3.1 works do not with Cisco AnyConnect
Does anyone else have this problem? Since the upgrade to 9.3.1 iOS I am more able to use one of the hotspot from my iPhone to connect to the VPN from my company using Cisco AnyConnect. I can still connect via Wi-Fi, but not with the iPhone 5s or 6s hotspot feature.
Ideas?
TIA,
DM
Hello, I'm from the Italy, and I have the same problem on my 5 64 GB iPhone.
I have updated to iOS 9.3.1 and now I don't have the Hotspot feature in the phone settings Menu.
What is happen? I work with this feature and now I need to change the phone!
Maybe you are looking for
-
Update Windows 7 auto = data loss
No device I used the Palm software for more than ten years without ever having a problem. A month ago automatic updates of Windows closed and restarted my computer. All my calendar entries, except recurring events have been wiped out. About a week
-
Upgrade of Windows 8 on Satellite P300 - possible?
I want my P300 upgrade to windows 8. Is it possible and easy to do? Thank you.
-
HHD on pavilion dm4-1265dx failed, replacement?
It is what is inside at the moment: http://www.amazon.com/dp/B0039Z5IUU/ref=asc_df_B0039Z5IUU2091099?smid=A33Y0YQUZ2NYD5&tag=cnet-pc-20&... want to see if I can replace it without pain with: http://www.amazon.com/Seagate-Momentus-Internal-Notebook-ST
-
Results of the stage not listed is not in the report
Hello. New to TestStand. I appointed a string value test which compares the serial number USE by using RunState.Root.Locals.UUT.SerialNumber. However, when the report is generated, I don't see any results of the step. This only happens with this sequ
-
Measurement and automation software can not find DAQ
I use a USB-6009 OEM data acquisition as part of a test set-up, and everything works fine. We recently sent a Board in China with the same software we use, which they installed on a brand new computer. When they plug the USB cable, the LED flashes