Depressed my ASA 5505 can't do IPV6 tunnels

itdaddyitdaddy Senior MemberMember Posts: 2,089 ■■■■□□□□□□
The ASAs don't support basic tunnels, they only support IPSec tunnels (The ASA doesn't run IOS). It would be neat if he.net supported IPSec tunnels and then I'd try out my 5505 (If someone at he.net wants to try this I'm game to beta it). In the mean time I'm IPv4 only at home.
read the above from a HE.net forum..they are big into ipv6 tunneling...I so pissed...
do not get an ASA 5505 if you want to do a tunnel to an IPV6 relay and access the ipv6 world. you can do it with say a cisco router that has ipv6. but not and ASA 5505..
I bought it thinking it would what lesson I learned....very disapointed in cisco or myself for that matter ASSUMing it would work..you know what they say about assuming

Arse out of me......grrrrrrrrrrrrrrrrrrrrrrrrrrrr

can someone just lie to me and says it works give me a fake config and i try it and magically it works grrrrrrrrrrrrrrrrrr!

Comments

  • EdTheLadEdTheLad Member Posts: 2,111 ■■■■□□□□□□
    I dont know what your talking about, it works fine for me.Are you sure your running the latest ios?
    Networking, sometimes i love it, mostly i hate it.Its all about the $$$$
  • itdaddyitdaddy Senior Member Member Posts: 2,089 ■■■■□□□□□□
    EdTheLand
    I am running ASA 5505 with 7.2(4) software version
    Everyone on the HE.net forum says so...man can you help me..my email is [email protected] I cannot for the life of me find any good references..I really want to get this going..if you have time I can send you my config thru the email if you have time so I can see how to config my tunnel.and I have some questions to ask you on how it all works. like do i have have clients on my LAN config with ipv6 addresses as well as ipv4?
    stuff like that. and will i be able to have both ipv4 and ipv6 access?

    I just read abunch on hurricane electric forum saying you have to put a router in front
    of the asa 5505 which i think is crap! I should be able to tunnel to he.net but they say
    he.net doesnt have IPSEC tunnel capablity. what do you think Edtheland lay it on me brother!

    Robert
    thanks for replying..

    asa(config)# sh ver

    Cisco Adaptive Security Appliance Software Version 7.2(4)
    Device Manager Version 5.2(4)

    Compiled on Sun 06-Apr-08 13:39 by builders
    System image file is "disk0:/asa724-k8.bin"
    Config file at boot was "startup-config"

    asa up 20 hours 35 mins

    Hardware: ASA5505, 256 MB RAM, CPU Geode 500 MHz
    Internal ATA Compact Flash, 128MB
    BIOS Flash M50FW080 @ 0xffe00000, 1024KB

    Encryption hardware device : Cisco ASA-5505 on-board accelerator (revision 0x0)
    Boot microcode : CNlite-MC-Boot-Cisco-1.2
    SSL/IKE microcode: CNlite-MC-IPSEC-Admin-3.03
    IPSec microcode : CNlite-MC-IPSECm-MAIN-2.05
    0: Int: Internal-Data0/0 : address is 001d.704e.0a4f, irq 11
    1: Ext: Ethernet0/0 : address is 001d.704e.0a47, irq 255
    2: Ext: Ethernet0/1 : address is 001d.704e.0a48, irq 255
    3: Ext: Ethernet0/2 : address is 001d.704e.0a49, irq 255
    4: Ext: Ethernet0/3 : address is 001d.704e.0a4a, irq 255
    5: Ext: Ethernet0/4 : address is 001d.704e.0a4b, irq 255
    6: Ext: Ethernet0/5 : address is 001d.704e.0a4c, irq 255
    7: Ext: Ethernet0/6 : address is 001d.704e.0a4d, irq 255
    8: Ext: Ethernet0/7 : address is 001d.704e.0a4e, irq 255
    9: Int: Internal-Data0/1 : address is 0000.0003.0002, irq 255
    10: Int: Not used : irq 255
    11: Int: Not used : irq 255

    Licensed features for this platform:
    Maximum Physical Interfaces : 8
    VLANs : 3, DMZ Restricted
    Inside Hosts : 10
    Failover : Disabled
    VPN-DES : Enabled
    VPN-3DES-AES : Enabled
    VPN Peers : 10
    WebVPN Peers : 2
    Dual ISPs : Disabled
    VLAN Trunk Ports : 0

    This platform has a Base license.

    Serial Number: JMX1226Z2U3
    Running Activation Key: 0x861e7354 0xb8caf258 0x84f28da4 0xa7b8e060 0x83379a93
    Configuration register is 0x1
    Configuration has not been modified since last system restart.
  • EdTheLadEdTheLad Member Posts: 2,111 ■■■■□□□□□□
    You asked me to lie so i did icon_smile.gif .

    Ops i forgot the config.

    hostname gullible
    int fa0/1
    description Cant belive you feel for that
    Networking, sometimes i love it, mostly i hate it.Its all about the $$$$
  • mikej412mikej412 Member Posts: 10,086 ■■■■■■■■■■
    itdaddy wrote: »
    I just read abunch on hurricane electric forum saying you have to put a router in front of the asa 5505 which i think is crap!
    Just curious -- exactly why is that crap?

    If you don't have a router in front of your ASA, then why don't you tunnel from a router BEHIND your ASA?
    :mike: Cisco Certifications -- Collect the Entire Set!
  • itdaddyitdaddy Senior Member Member Posts: 2,089 ■■■■□□□□□□
    Mike
    it is crap becuase it is so much setup. I mean the asa 5505 should work as a front-end/bridgehead type setup...it comes with ipv6 cabability and even routing why doesnt it work..it is suppose to have tons of bells and whistles...

    on the second not note you said..You mean I can put it behind it? hum! that is still a bunch of setup but I guess what I make s static entry to the router behind it to portforward ipv6 traffice to the tunnel setup on my SOHO 831?

    I guess I just dont have enough info on how to do this i guess it will be piece work.

    I have not found anyone who has done this and I dont know where to look?
    I have just found nay sayers. So mike I can static route ipv6 to my inside
    and to the 831 soho and then tunnel from there? to HE.net?
    and do I have to have IPV6 clients or does the 831 translate my ipv4 addresses to ipv6 addresses



    thank EdTheLand I am so gullible you reallygotme! man what a dork I am

    thanks guys
Sign In or Register to comment.