Answer the question
In order to leave comments, you need to log in
Cisco IOS 12.4.24 asking for license when connecting with AnyConnect?
It was necessary to configure Cisco SSL VPN in branches here. Installed, configured - everything works.
But a problem surfaced in one of the branches - Tsiska sends off - he asks for a license.
The required license for this type ov VPN client is not avaliable on the secure gateway
webvpn gateway GATEWAY
hostname tf.domain.ru
ip address X.X.X.X port 443
http-redirect port 80
ssl trustpoint tf.domain.ru
logging enable
inservice
!
webvpn install svc flash:/webvpn/anyconnect-win-2.5.3046-k9.pkg sequence 1
!
webvpn context sslvpn
title "WELCOME TO COOL SSLVPN Server"
secondary-color white
title-color #CCCC66
text-color black
ssl authenticate verify all
!
login-message "Enter your credentials"
!
policy group vpn1
functions svc-enabled
banner "Authentication on SSLVPN server success"
timeout idle 3600
timeout session 10800
svc address-pool "EVPN_POOL"
svc default-domain "tep.local"
svc keep-client-installed
svc split dns "tep.local"
svc split include 10.0.0.0 255.0.0.0
svc split include X.X.X.X 255.255.255.255
svc dns-server primary 10.70.11.251
svc dns-server secondary 10.70.12.80
default-group-policy vpn1
aaa authentication list evpn_auth_1
aaa accounting list vpn-users
gateway GATEWAY
max-users 100
logging enable
inservice
!
end
Answer the question
In order to leave comments, you need to log in
The issue was resolved by selecting ROM-MON and IOS without changing the configuration of services
Everything worked in the following configuration:
ROM: System Bootstrap, Version 12.4(13r)T, RELEASE SOFTWARE (fc1)
System image file is "usbflash0:c2800nm-advipservicesk9-mz.151-2.T2.bin"
How many users are already connected? Or the first one sends off? What does "show license" say? Did the piece of iron (you never know)?
The most interesting thing is that on all four branches the aniconnect started up with a half-kick, but on one it doesn’t want to ... and I can’t figure out what I’m doing wrong ... in the intricacies of cisco licensing, with leathering, I’m almost a noob. There are also subtleties of IOS-ROMMON compatibility
After your advice
Try disabling the "no crypto engine onboard 0" crypto acceleratorNow it won't connect at all...
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question